plugins-management

Pass

Audited by Gen Agent Trust Hub on Sep 22, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The prepare_submission.py script utilizes the subprocess module to execute git and gh (GitHub CLI) commands to gather repository metadata such as commit SHAs and remote URLs. The implementation uses list-based arguments for subprocess.run, which is a secure method for command execution.\n- [SAFE]: The skill is a collection of developer utility scripts for plugin development. It includes validation logic for plugin manifests and directory structures, and provides templates for various plugin components. The documentation explicitly mandates user confirmation for any destructive actions like deleting or uninstalling plugins.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 22, 2026, 02:48 AM
Security Audit — agent-trust-hub — plugins-management