skills/bitjaru/styleseed/ss-resolve/Gen Agent Trust Hub

ss-resolve

Pass

Audited by Gen Agent Trust Hub on Sep 7, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns or security vulnerabilities were detected. The skill performs legitimate design-system management tasks using standard Node.js modules for file operations and cryptography.
  • [SAFE]: The skill implements strong defensive programming practices. The runtime-contract.mjs file includes a safeProjectPath function that uses realpathSync and path relativity checks to strictly prevent path traversal attacks. It also includes parseStrictJson, a custom parser that enforces depth limits and prevents duplicate keys, mitigating common data injection risks.
  • [SAFE]: The distribution-integrity.mjs script provides a mechanism for the skill to verify its own file integrity against a signed manifest, which is a significant security best practice for protecting against local tampering.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 7, 2026, 06:07 PM
Security Audit — agent-trust-hub — ss-resolve