code-migration
Pass
Audited by Gen Agent Trust Hub on Aug 5, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- Human-in-the-Loop Workflow: The skill is designed around a six-step process that requires explicit human sign-off at each stage. This ensures that a human remains in control of the migration progress and reviews all significant decisions before the agent proceeds.
- Controlled Command Execution: The skill orchestrates the use of specific migration scripts, such as
queue_runner.mjsand dependency mapping tools. These are executed to manage tasks like gap inventory and translation queues, which are functional components of the migration process. - Security Configuration Protections: There is an explicit instruction preventing the agent from modifying the
.claude/settings.jsonfile. By requiring the human to manually install or update settings, the skill ensures that security and permission configurations remain under direct human oversight and cannot be autonomously altered by the agent. - Data Analysis Surface: As the skill performs broad codebase analysis to generate migration maps and rules, it naturally processes external data. The inclusion of adversarial review steps and structured sign-off gates helps manage the integrity of the migration output.
Audit Metadata