janitor-report

Pass

Audited by Gen Agent Trust Hub on Apr 16, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes local bash scripts (scan.sh, lint.sh, detect_dupes.sh) to analyze the filesystem and generate reports. These scripts are located in the ~/.claude/skills/skills-janitor/scripts/ directory, which is the intended location for the skill suite's components.
  • [PROMPT_INJECTION]: The skill processes metadata and content from other skill files, creating a surface for indirect prompt injection.
  • Ingestion points: SKILL.md files located in user, project, and plugin scopes.
  • Boundary markers: None identified in the markdown instructions.
  • Capability inventory: Execution of shell commands via bash.
  • Sanitization: No sanitization or filtering of audited content is mentioned in the instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 16, 2026, 12:50 PM