coding-conventions-agent
Pass
Audited by Gen Agent Trust Hub on Mar 12, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill consists of markdown-based guidelines, templates, and reference materials. No executable scripts or malicious patterns were identified during the analysis.
- [NO_CODE]: The skill includes no code or binaries; it functions entirely by providing instructions to the agent on how to review and format code.
- [CREDENTIALS_UNSAFE]: The skill correctly addresses secret management by recommending the use of environment variables and providing explicit warnings against hardcoding sensitive credentials in source code or configuration files.
- [COMMAND_EXECUTION]: References to command-line utilities (e.g., npm, pip, dotnet, spec-kitty) within the documentation are instructional for project workflows and do not involve the execution of untrusted commands by the skill itself.
Audit Metadata