spec-kit-claude-code-workflow

Pass

Audited by Gen Agent Trust Hub on Sep 27, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: The skill consists exclusively of markdown documentation and a JSON metadata report. No executable scripts, binaries, or command-line instructions are present.
  • [SAFE]: No network operations, external downloads, or remote code execution patterns were identified within the skill content.
  • [SAFE]: No sensitive file access, credential harvesting, or data exfiltration patterns were found.
  • [SAFE]: The skill does not contain any prompt injection attempts or obfuscated content. While the included 'skill-report.json' lists several 'static findings' from a previous automated scan, these are correctly identified in that report as false positives triggered by common development terminology (e.g., 'rapid prototyping' and 'workflow effectiveness').
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 27, 2026, 09:38 AM