auditing-enforcement-and-meta-artifacts
Pass
Audited by Gen Agent Trust Hub on Jul 6, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill instructions are focused entirely on providing a framework for auditing software engineering meta-artifacts. There are no attempts to override safety filters, bypass instructions, or inject malicious prompts.
- [SAFE]: No hardcoded credentials, sensitive file access, or data exfiltration patterns were detected. All URL references point to official documentation (e.g., Google SRE Workbook) or well-known development tools.
- [SAFE]: No code or instructional obfuscation (such as Base64 encoding, zero-width characters, or homoglyphs) was found in any of the skill files.
- [SAFE]: The skill does not perform any remote code execution, external script downloads, or package installations. It recommends the use of standard industry tools (ESLint, Ruff, pint, promtool) for mechanizing audits within a user's own CI/CD pipeline.
- [SAFE]: No privilege escalation or persistence mechanisms are requested or implemented. The skill operates as a read-only auditor of repository configuration and meta-artifacts.
- [SAFE]: The skill's metadata is consistent with its stated purpose, and there are no signs of metadata poisoning or deceptive descriptions.
Audit Metadata