yq
Pass
Audited by Gen Agent Trust Hub on Apr 10, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes the 'x yq' command to query, extract, and modify structured data files (YAML, JSON, XML). This behavior is consistent with the tool's documented purpose.
- [DATA_EXPOSURE]: The skill involves reading local configuration files (e.g., 'config.yml') to extract information or convert formats. These operations are performed on user-specified files and do not include unauthorized network transmission.
- [SAFE]: Analysis of the instructions and examples revealed no evidence of prompt injection, obfuscation, hardcoded credentials, or persistence mechanisms.
Audit Metadata