create-plugin

Pass

Audited by Gen Agent Trust Hub on Jun 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's primary function is to generate boilerplate code and configuration for plugin development. All identified patterns, such as the use of Git and the GitHub CLI, are standard for this use case.
  • [SAFE]: No evidence of prompt injection, data exfiltration, or malicious persistence mechanisms was found in the instructions or generated templates.
  • [SAFE]: External references are limited to GitHub, which is appropriate for a tool focused on repository creation and plugin management.
  • [SAFE]: The interpolation of user-provided strings into templates and shell commands is used for legitimate scaffolding purposes (e.g., setting the repository name or author) and does not represent an unusual security risk in this context.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 17, 2026, 11:52 AM
Security Audit — agent-trust-hub — create-plugin