best-practices-audit
Pass
Audited by Gen Agent Trust Hub on Jun 22, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: The skill processes untrusted input from the project's CLAUDE.md file. It correctly mitigates risks by instructing the agent to treat the content as untrusted and strictly forbidding the passing of extracted values to shell commands.\n- [COMMAND_EXECUTION]: The skill uses file system tools (Read, Glob, Grep) to audit codebase alignment and performs file writes during its auto-fix phase. These operations are limited to the skill's documented purpose of document maintenance.
Audit Metadata