ast-grep
Pass
Audited by Gen Agent Trust Hub on Jul 11, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: Detailed analysis of the skill instructions and reference materials confirms that the content is benign and serves legitimate developer workflows for static analysis.\n- [COMMAND_EXECUTION]: The skill leverages local command-line tools and file operations to execute ast-grep. It includes defensive instructions that recommend using configuration files over inline shell strings, which effectively reduces the surface for command injection attacks.\n- [DATA_EXFILTRATION]: There are no patterns involving unauthorized data access or network communication. The skill's operations are confined to searching local codebases as requested by the user.
Audit Metadata