night-market-config-catalog
Pass
Audited by Gen Agent Trust Hub on Jul 31, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill provides a 'Provenance and maintenance' section with bash commands (e.g.,
jq,rg,ls,head) for the agent to verify the project's configuration state. These commands are diagnostic and read-only, targeting non-sensitive project files likepyproject.tomland.claude/quality_gates.jsonwithout any network involvement. - [EXTERNAL_DOWNLOADS]: The documentation references standard development tools and security scanners, including
bandit,ruff, andmarkitdown-mcp. These are well-known utilities mentioned in the context of the project's defined toolchain and do not represent suspicious remote code execution.
Audit Metadata