thanks-card-overview
Pass
Audited by Gen Agent Trust Hub on Mar 16, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [SAFE]: The documentation is written in standard Markdown and contains no hidden scripts, malicious instructions, or obfuscated content. The skill serves as a static knowledge base for project participants.
- [EXTERNAL_DOWNLOADS]: The skill references established development tools and libraries from trusted organizations such as AWS, Vue.js, and Hono. All external URLs provided (e.g., scrumguides.org) are for legitimate informational purposes and point to well-known domains.
- [COMMAND_EXECUTION]: Descriptions of the development workflow include references to CLI tools like pnpm and SST. These references are purely educational, explaining how developers should manage the project, and do not contain scripts that perform unauthorized actions on the host system.
- [PROMPT_INJECTION]: The skill includes documentation for AI rules (CLAUDE.md, .github/copilot-instructions.md) to maintain design system consistency. These are standard configuration guidelines for development agents and do not attempt to bypass safety filters or extract sensitive information.
Audit Metadata