oss-forensics

Pass

Audited by Gen Agent Trust Hub on Jun 23, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill acts as a documentation and procedural guide for security auditing. It suggests the use of reputable third-party tools like syft, grype, trivy, and ecosystem-native auditors (pip audit, npm audit).
  • [COMMAND_EXECUTION]: The skill includes examples of shell commands for forensic purposes, such as searching git history (git log --all -S 'password') and scanning filesystems. These commands are standard for the intended use case of security triage and do not exhibit malicious intent, privilege escalation, or unauthorized data access.
  • [PROMPT_INJECTION]: There are no signs of adversarial instructions or attempts to bypass agent safety filters. The instructions are clearly intended for improving security analysis workflows.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 23, 2026, 05:25 PM
Security Audit — agent-trust-hub — oss-forensics