python-productive

Pass

Audited by Gen Agent Trust Hub on Aug 31, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill follows secure development practices by recommending the use of Pydantic's SecretStr for handling sensitive data and explicitly instructing the agent not to print .env files or API keys.
  • [SAFE]: All external references (GitHub and npm) point to the vendor's own namespaces ('bh611627' and '@skillcodex'), which is consistent with legitimate skill distribution.
  • [SAFE]: The skill uses standard tooling (uv, Ruff, pytest) and adheres to least-privilege principles by scoping its operations to repository files and development tasks.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 31, 2026, 03:02 AM
Security Audit — agent-trust-hub — python-productive