stelow-product-marketplace-playbook
Pass
Audited by Gen Agent Trust Hub on Jul 18, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides utility scripts and references that use standard system commands like
bash,node,git, andnpxfor configuration management and tool execution. For example,read-config.mdusesnode -eto parse local configuration files. - [EXTERNAL_DOWNLOADS]: The documentation references multiple third-party tools and packages available via NPM and GitHub, including
@earendil-works/pi-agent-browser,@tintinweb/pi-subagents, and repositories such asgithub.com/cursor/plugins. These are presented as extensions for the stelow framework. - [SAFE]: No malicious behavior, obfuscation, or safety bypasses were identified. The core playbook content in
SKILL.mdis purely instructional business strategy with tool invocation disabled viadisable-model-invocation: true.
Audit Metadata