macos-build

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill utilizes standard macOS command-line utilities (xcodebuild, find, grep, ls) to manage and build Xcode projects. The operations described are consistent with legitimate development workflows.
  • [INDIRECT_PROMPT_INJECTION]: The skill identifies and processes local Xcode project files which may contain build scripts or instructions.
  • Ingestion points: Project files (.xcodeproj, .xcworkspace) discovered in the local directory via the find command.
  • Boundary markers: The skill does not implement specific delimiters or warnings for embedded instructions within project files.
  • Capability inventory: xcodebuild has the capability to execute shell scripts defined in Build Phases and compile code.
  • Sanitization: No sanitization is performed on the project file content before processing with xcodebuild.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 03:56 PM
Security Audit — agent-trust-hub — macos-build