align-repo
Pass
Audited by Gen Agent Trust Hub on Apr 15, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill fetches and installs updates and related developer tools from the vendor's GitHub repository (https://github.com/apocohq/skills) using the
npx skillsutility. - [COMMAND_EXECUTION]: Uses the
npx skillscommand to perform repository audits, install new skills, and check for updates to the current toolset. - [DATA_EXFILTRATION]: Reads repository configuration files such as
.claude/settings.jsonandCLAUDE.mdto identify alignment gaps. These operations are local and do not involve sending data to third-party domains.
Audit Metadata