janitor-report
Pass
Audited by Gen Agent Trust Hub on Apr 16, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes local bash scripts (scan.sh, lint.sh, detect_dupes.sh) to analyze the filesystem and generate reports. These scripts are located in the ~/.claude/skills/skills-janitor/scripts/ directory, which is the intended location for the skill suite's components.
- [PROMPT_INJECTION]: The skill processes metadata and content from other skill files, creating a surface for indirect prompt injection.
- Ingestion points: SKILL.md files located in user, project, and plugin scopes.
- Boundary markers: None identified in the markdown instructions.
- Capability inventory: Execution of shell commands via bash.
- Sanitization: No sanitization or filtering of audited content is mentioned in the instructions.
Audit Metadata