ship-init
Pass
Audited by Gen Agent Trust Hub on Apr 8, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill performs standard initialization tasks such as reading project metadata and writing a local configuration file (.claude/ship.local.md) based on user input.- [SAFE]: Implements a security best practice by prompting the user to add local configuration files to .gitignore in shared environments, preventing accidental exposure of local context.- [SAFE]: The use of Bash, Read, and Glob tools is limited to analyzing the local repository structure and commit history to provide a project summary, with no evidence of unauthorized data exfiltration or remote execution.
Audit Metadata