todo-create
Pass
Audited by Gen Agent Trust Hub on Mar 30, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is designed to manage local documentation files within a designated directory (
.context/compound-engineering/todos/). It adheres to security best practices by explicitly instructing the agent to prefer native file-search and content-search tools over shell commands, effectively mitigating common command injection risks. Shell usage is limited to standard, non-privileged operations such asmkdirandmvfor directory management and file organization. No instances of remote code execution, data exfiltration, or credential exposure were identified.
Audit Metadata