stack-templates

Fail

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: CRITICAL
Full Analysis
  • [COMMAND_EXECUTION] (SAFE): The daemon-service.md template includes a CLI pattern using child_process.spawn to start a background process. This is the intended primary purpose of a daemon management component and uses static or developer-defined paths.
  • [EXTERNAL_DOWNLOADS] (SAFE): The templates reference various @outfitter/* packages and standard ecosystem libraries like zod and commander. No untrusted or malicious dependencies were identified.
  • [DATA_EXFILTRATION] (SAFE): Templates involve logging and local file system access for PID and socket management (using XDG-compliant paths). The logging configuration includes a redaction toggle, following security best practices.
Recommendations
  • Contains 1 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Feb 17, 2026, 06:50 PM