spec-kit-claude-code-workflow
Pass
Audited by Gen Agent Trust Hub on Sep 27, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill consists exclusively of markdown documentation and a JSON metadata report. No executable scripts, binaries, or command-line instructions are present.
- [SAFE]: No network operations, external downloads, or remote code execution patterns were identified within the skill content.
- [SAFE]: No sensitive file access, credential harvesting, or data exfiltration patterns were found.
- [SAFE]: The skill does not contain any prompt injection attempts or obfuscated content. While the included 'skill-report.json' lists several 'static findings' from a previous automated scan, these are correctly identified in that report as false positives triggered by common development terminology (e.g., 'rapid prototyping' and 'workflow effectiveness').
Audit Metadata