wasp-plugin-init

Pass

Audited by Gen Agent Trust Hub on Mar 5, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses the Bash tool to execute the cp command. This is used to copy a local documentation file (general-wasp-knowledge.md) from the plugin's installation directory to the user's project workspace. The operation uses a fixed path and is preceded by a user consent prompt.
  • [DATA_EXPOSURE]: The skill modifies the CLAUDE.md configuration file to import Wasp-specific knowledge. This facilitates local information sharing between files and does not involve the exfiltration of sensitive data or hardcoded credentials.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 5, 2026, 05:19 AM