create-spec
Pass
Audited by Gen Agent Trust Hub on Mar 21, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's primary function is to read and write markdown files locally within the project directory to facilitate documentation.
- [COMMAND_EXECUTION]: The skill performs a read-only scan of the project structure and local files (e.g., README, specs/CONSTITUTION.md) to build context, which is standard and safe behavior for AI development agents.
- [DATA_EXFILTRATION]: No network-enabled tools (like curl or fetch) or external data transmission patterns were identified in the skill logic.
- [PROMPT_INJECTION]: The instructions do not contain markers for overriding safety filters, extracting system prompts, or bypassing agent constraints.
Audit Metadata