gpc-plugin-development
Pass
Audited by Gen Agent Trust Hub on May 6, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The detection script
scripts/detect_gpc.mjsexecutes hardcoded CLI commands such asgpc --versionandgpc auth statusto determine environment details. These operations are benign and represent standard environment discovery logic.- [EXTERNAL_DOWNLOADS]: The documentation mentions installing the@gpc-cli/plugin-sdkpackage and other development tools liketypescriptandvitest. These are standard dependencies used within the documented plugin development workflow and do not represent a security risk.
Audit Metadata