oss-forensics
Pass
Audited by Gen Agent Trust Hub on Jun 23, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill acts as a documentation and procedural guide for security auditing. It suggests the use of reputable third-party tools like
syft,grype,trivy, and ecosystem-native auditors (pip audit,npm audit). - [COMMAND_EXECUTION]: The skill includes examples of shell commands for forensic purposes, such as searching git history (
git log --all -S 'password') and scanning filesystems. These commands are standard for the intended use case of security triage and do not exhibit malicious intent, privilege escalation, or unauthorized data access. - [PROMPT_INJECTION]: There are no signs of adversarial instructions or attempts to bypass agent safety filters. The instructions are clearly intended for improving security analysis workflows.
Audit Metadata