human-gate-post-webui
Pass
Audited by Gen Agent Trust Hub on Sep 20, 2026
Risk Level: SAFECOMMAND_EXECUTIONDYNAMIC_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to execute shell commands using the
bunJavaScript runtime to interface with a local database located at~/vault/ledger.db. It explicitly modifies thePATHto include~/.bun/binto ensure the tool is available. - [DYNAMIC_EXECUTION]: The skill uses the
bun -eflag to execute dynamically generated JavaScript code strings that utilize thebun:sqlitemodule. These strings are constructed using a provided template to insert 'feedback' rows into the local ledger.
Audit Metadata