threat-model-analyst
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill defines a highly structured workflow for security auditing, emphasizing evidence-based analysis and the identification of existing security controls before flagging gaps.
- [SAFE]: Terminal usage is restricted to standard developer tools (git, grep, Get-Date) and system metadata gathering (hostname) for audit trail and reporting purposes.
- [SAFE]: The skill includes extensive boundary markers and guardrails (e.g., deterministic naming rules, mandatory verification checklists, and sub-agent governance) to prevent unintended behaviors or instruction overrides during the processing of untrusted repository data.
- [SAFE]: No malicious behaviors such as prompt injection, data exfiltration, obfuscation, or unauthorized remote code execution are present in the provided instructions or reference materials.
Audit Metadata