bmad-sprint-planning

Pass

Audited by Gen Agent Trust Hub on May 10, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill performs routine project management tasks, such as reading local markdown files and generating status reports in YAML format. All operations are confined to the local project structure.
  • [COMMAND_EXECUTION]: The skill executes a local Python utility script _bmad/scripts/resolve_customization.py. This script belongs to the author's internal framework and is used for configuration merging and activation steps.
  • [DATA_EXFILTRATION]: No network operations (e.g., curl, wget) or attempts to access sensitive system files (e.g., .ssh, .aws) were detected.
  • [PROMPT_INJECTION]: The instructions are task-oriented and do not contain patterns aimed at bypassing agent safety guidelines or extracting system prompts.
Audit Metadata
Risk Level
SAFE
Analyzed
May 10, 2026, 05:26 PM