openspec-apply-change
Pass
Audited by Gen Agent Trust Hub on Mar 29, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements a standard software development workflow using the
openspecCLI tool. All identified behaviors are consistent with its stated purpose of managing and implementing code changes. - [COMMAND_EXECUTION]: Executes local shell commands via the
openspecCLI (e.g.,openspec list,openspec status,openspec instructions) to retrieve task metadata and project state. - [SAFE]: No instances of prompt injection, data exfiltration, or hardcoded credentials were found. The skill operates on local project files and does not perform unauthorized network requests.
- [SAFE]: No obfuscation techniques, such as Base64 encoding or hidden Unicode characters, are present in the instructions or metadata.
Audit Metadata