code-env-setup
Pass
Audited by Gen Agent Trust Hub on Apr 26, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill executes local shell commands to run a bundled Python detection script and to interface with the official Claude CLI for environment configuration. All command executions are performed with the user's explicit consent following a detailed summary of proposed changes.
- [EXTERNAL_DOWNLOADS]: The skill fetches a Markdown-based setup guide from the author's official GitHub repository to provide up-to-date configuration recommendations. This is a standard resource fetch for documentation purposes.
- [DATA_EXFILTRATION]: No exfiltration risks were identified. The skill enhances security by setting up a 'Block Secrets Hook' (a Python script) and global security rules that specifically prevent the agent from reading, writing, or exposing sensitive files such as .env, SSH keys, and API credentials.
Audit Metadata