create-prd

Pass

Audited by Gen Agent Trust Hub on Sep 30, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill includes a Python script scripts/prd_scaffolder.py that utilizes only standard library modules (argparse, sys, textwrap, datetime). It does not perform any network operations, access sensitive file paths, or use dangerous functions like eval() or exec().
  • [SAFE]: The instructions demonstrate security awareness by explicitly advising users to use synthetic data instead of customer PII (Personally Identifiable Information) when working with third-party prototyping tools.
  • [SAFE]: No evidence of prompt injection, obfuscation, or hardcoded credentials was found in the documentation or the supporting scripts.
  • [SAFE]: The skill does not attempt to persist access, escalate privileges, or download external code from untrusted sources.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 30, 2026, 08:33 PM
Security Audit — agent-trust-hub — create-prd