auditing-compliance-and-provenance

Pass

Audited by Gen Agent Trust Hub on Jul 6, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns or security vulnerabilities were identified in the skill instructions or reference files.
  • [PROMPT_INJECTION]: The skill uses instructional language to guide the agent's auditing logic. It does not contain patterns designed to bypass safety constraints or override system behavior.
  • [DATA_EXFILTRATION]: No network requests, hardcoded credentials, or unauthorized sensitive file access were found.
  • [REMOTE_CODE_EXECUTION]: The skill does not download or execute external scripts. It provides a list of recommended third-party tools (e.g., Snyk, Gitleaks) for users to integrate into their own CI/CD pipelines, but does not automate their execution.
  • [DYNAMIC_EXECUTION]: There is no dynamic code generation, runtime compilation, or unsafe deserialization present in the skill's instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 6, 2026, 11:23 PM
Security Audit — agent-trust-hub — auditing-compliance-and-provenance