project-development-v2-common

Pass

Audited by Gen Agent Trust Hub on Jun 14, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists exclusively of policy documentation and configuration files. It does not contain any executable scripts or binary components.
  • [SAFE]: No network operations, external downloads, or remote code execution patterns were detected.
  • [SAFE]: The 'No Simulation Policy' (references/no-simulation-policy.md) serves as a defensive measure by explicitly prohibiting the agent from faking test results, command outputs, or API responses.
  • [SAFE]: The 'Delivery Contract' (references/delivery-contract.md) establishes a clear traceability framework (IDs like R-, A-, V-*) and directory management rules for the 'workplace/' folder, which helps maintain project integrity without introducing security vulnerabilities.
  • [SAFE]: The 'Question Policy' (references/question-policy.md) provides guidelines to minimize user interruption while ensuring critical security and safety risks are addressed before proceeding with implementation.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 14, 2026, 01:39 PM
Security Audit — agent-trust-hub — project-development-v2-common