wasp-plugin-init
Pass
Audited by Gen Agent Trust Hub on Mar 5, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the Bash tool to execute the
cpcommand. This is used to copy a local documentation file (general-wasp-knowledge.md) from the plugin's installation directory to the user's project workspace. The operation uses a fixed path and is preceded by a user consent prompt. - [DATA_EXPOSURE]: The skill modifies the
CLAUDE.mdconfiguration file to import Wasp-specific knowledge. This facilitates local information sharing between files and does not involve the exfiltration of sensitive data or hardcoded credentials.
Audit Metadata