x07-lint-repair
Pass
Audited by Gen Agent Trust Hub on Mar 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists entirely of documentation and instructions, with no bundled executable code, scripts, or remote dependencies included in the package.\n- [COMMAND_EXECUTION]: The skill provides instructions for the agent to execute vendor-specific CLI commands (
x07 lint,x07 fix,x07 ast apply-patch,x07 fmt) to process local files. This is standard development functionality for the intended toolset.\n- [INDIRECT_PROMPT_INJECTION]: The skill defines a workflow for processing external JSON data, creating a potential attack surface for indirect prompt injection. However, this is inherent to file-processing skills and no exploitation patterns were found. 1. Ingestion points:src/main.x07.json,/tmp/repair.patch.json(SKILL.md). 2. Boundary markers: None specified. 3. Capability inventory: Local command execution viax07CLI (SKILL.md). 4. Sanitization: Not explicitly mentioned.
Audit Metadata