create-spec

Pass

Audited by Gen Agent Trust Hub on Mar 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's primary function is to read and write markdown files locally within the project directory to facilitate documentation.
  • [COMMAND_EXECUTION]: The skill performs a read-only scan of the project structure and local files (e.g., README, specs/CONSTITUTION.md) to build context, which is standard and safe behavior for AI development agents.
  • [DATA_EXFILTRATION]: No network-enabled tools (like curl or fetch) or external data transmission patterns were identified in the skill logic.
  • [PROMPT_INJECTION]: The instructions do not contain markers for overriding safety filters, extracting system prompts, or bypassing agent constraints.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 21, 2026, 10:15 AM
Security Audit — agent-trust-hub — create-spec