scrum-master

Pass

Audited by Gen Agent Trust Hub on May 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No prompt injection or override patterns detected in the skill instructions or documentation. The instructions remain within the intended domain of agile coaching and data analysis.
  • [SAFE]: No data exposure or exfiltration risks found. The scripts (velocity_analyzer.py, sprint_health_scorer.py, retrospective_analyzer.py) only use Python's standard library and perform local calculations on provided JSON files without making network requests.
  • [SAFE]: No obfuscation techniques, hidden characters, or encoded payloads were detected in any of the 12 files.
  • [SAFE]: No remote code execution or suspicious dependency patterns identified. The skill does not download external scripts or use dangerous functions like eval() or exec().
  • [SAFE]: No privilege escalation or persistence mechanisms found. The skill does not attempt to modify system files or acquire elevated permissions.
Audit Metadata
Risk Level
SAFE
Analyzed
May 15, 2026, 02:37 PM
Security Audit — agent-trust-hub — scrum-master