security-reviewer

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides numerous shell command templates for reconnaissance and vulnerability testing, such as using nmap for port discovery, sqlmap for SQL injection validation, and amass for subdomain enumeration. These capabilities are directly aligned with the skill's stated purpose as a security auditing tool.- [EXTERNAL_DOWNLOADS]: Instructions are included for installing industry-standard security tools from well-known and trusted package registries, such as pip installing Bandit and Semgrep, or using go install for Gosec. These tools are reputable components of the security professional's workflow.- [SAFE]: The skill implements a robust 'Constraints' section that explicitly prohibits testing on production systems without authorization, requires following rules of engagement, and mandates the use of non-destructive proof-of-concept methods to demonstrate impact safely.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 07:46 PM
Security Audit — agent-trust-hub — security-reviewer