skills/srbhr/resume-matcher/ui-review/Gen Agent Trust Hub

ui-review

Pass

Audited by Gen Agent Trust Hub on Mar 13, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes ripgrep (rg) via the Bash tool to perform automated checks on frontend source files. The commands are constructed with static search patterns and target specific project directories, which is consistent with its stated purpose.
  • [DATA_EXPOSURE]: The skill uses the Read tool and rg to examine files within the apps/frontend/ directory and design documentation. This access is limited to project-related UI code and does not involve sensitive configuration files or personal data.
  • [REMOTE_CODE_EXECUTION]: While the skill's tool definitions include permission for npm commands, the actual instructions only utilize rg. No external packages are installed, and no remote scripts are downloaded or executed.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 13, 2026, 08:22 AM