claude-devfleet

Pass

Audited by Gen Agent Trust Hub on Apr 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill instructions and tool definitions do not contain any malicious patterns or safety-bypass attempts. The workflow is well-documented and prioritizes user confirmation of task plans.
  • [DATA_EXFILTRATION]: Network communication is restricted to a local MCP endpoint (http://localhost:18801/mcp). No unauthorized external domains or data exfiltration patterns were detected.
  • [COMMAND_EXECUTION]: While the skill is designed to manage agents that perform coding tasks in isolated git worktrees, the orchestration logic itself uses structured tools and does not involve arbitrary or hidden shell command execution within the skill's own context.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 1, 2026, 11:08 AM
Security Audit — agent-trust-hub — claude-devfleet