orch-refine-code

Pass

Audited by Gen Agent Trust Hub on Jun 16, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: No security issues were detected. The skill acts as a documentation wrapper for a refactoring workflow and does not contain any executable logic or network access.
  • [NO_CODE]: The skill is composed entirely of markdown instructions and configuration metadata; it does not ship with scripts, binaries, or automated shell commands.
  • [PROMPT_INJECTION]: The skill defines manual intervention points ('Gate 1' and 'Gate 2') for reviewing plans and commits, which serves as a mitigation against automated errors or malicious instruction following.
  • [EXTERNAL_DOWNLOADS]: While the skill mentions development tools like knip and depcheck, it does not contain commands to download or install them from the internet.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 16, 2026, 04:02 PM
Security Audit — agent-trust-hub — orch-refine-code