NYC

Cross-Platform Build Expert

Fail

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: CRITICAL
Full Analysis
  • SAFE (SAFE): The skill consists of educational documentation for secure software development workflows. No malicious patterns or security risks were identified in the content of 'references/security-examples.md'.
  • CREDENTIALS_UNSAFE (SAFE): The examples correctly illustrate the use of environment variables and secrets management (e.g., GitHub Secrets) instead of hardcoding sensitive data like API keys or certificates.
  • COMMAND_EXECUTION (SAFE): Shell and PowerShell commands provided are standard industry practices for signing and notarizing applications (e.g., signtool, codesign, xcrun) and are intended as reference templates.
  • REMOTE_CODE_EXECUTION (SAFE): No suspicious remote code execution patterns or unverified downloads were detected. The use of standard package managers (npm, cargo) and trusted signing tools is appropriate for the context.
Recommendations
  • Contains 1 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Feb 17, 2026, 05:21 PM