ast-grep

Pass

Audited by Gen Agent Trust Hub on Jul 11, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: Detailed analysis of the skill instructions and reference materials confirms that the content is benign and serves legitimate developer workflows for static analysis.\n- [COMMAND_EXECUTION]: The skill leverages local command-line tools and file operations to execute ast-grep. It includes defensive instructions that recommend using configuration files over inline shell strings, which effectively reduces the surface for command injection attacks.\n- [DATA_EXFILTRATION]: There are no patterns involving unauthorized data access or network communication. The skill's operations are confined to searching local codebases as requested by the user.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 11, 2026, 04:49 PM
Security Audit — agent-trust-hub — ast-grep