tooling-audit
Pass
Audited by Gen Agent Trust Hub on Jul 12, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues were detected. The skill is a legitimate technical auditing tool designed to assist in refactoring plans by identifying project dependencies and testing infrastructure.
- [DATA_EXPOSURE]: The skill identifies and reads project-level configuration files such as package.json, pom.xml, and pyproject.toml. This activity is restricted to the project scope and is necessary for the skill's primary function of detecting build and test tooling. It does not target sensitive system files, environment variables, or private credentials.
- [COMMAND_EXECUTION]: The skill instructions include the generation of installation tasks and verification commands. These are included in the audit output as documentation for subsequent user review and are not directly executed by the agent within the context of this skill.
Audit Metadata