security-scan
Pass
Audited by Gen Agent Trust Hub on Apr 15, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns or security vulnerabilities were identified. The skill is designed for defensive security auditing and includes explicit instructions to avoid exposing secrets in logs or commits.
- [COMMAND_EXECUTION]: The skill instructs the agent to execute local scripts (
scripts/doctor-security-config.sh,scripts/doctor-security-config.ps1,scripts/privacy-guard.mjs) and platform CLI tools (aios). These executions are legitimate and necessary for the skill's stated purpose of repository scanning and security verification. - [SAFE]: The skill processes repository configuration data as its primary function. It incorporates risk mitigation by directing the agent to use a 'Privacy Guard' tool to redact sensitive tokens or credentials before processing file content.
Audit Metadata