gpc-plugin-development

Pass

Audited by Gen Agent Trust Hub on May 6, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The detection script scripts/detect_gpc.mjs executes hardcoded CLI commands such as gpc --version and gpc auth status to determine environment details. These operations are benign and represent standard environment discovery logic.- [EXTERNAL_DOWNLOADS]: The documentation mentions installing the @gpc-cli/plugin-sdk package and other development tools like typescript and vitest. These are standard dependencies used within the documented plugin development workflow and do not represent a security risk.
Audit Metadata
Risk Level
SAFE
Analyzed
May 6, 2026, 03:57 AM