ast-grep

Pass

Audited by Gen Agent Trust Hub on May 6, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions to download pre-built binaries from the official ast-grep GitHub repository.
  • [EXTERNAL_DOWNLOADS]: The skill utilizes standard package managers (npm, pip, cargo) to install the tool from official registries.
  • [COMMAND_EXECUTION]: The skill documents the use of CLI commands to perform structural searches and automated rewrites on local source code files.
  • [COMMAND_EXECUTION]: Provides integration examples for GitHub Actions and pre-commit hooks, which are standard developer workflows.
Audit Metadata
Risk Level
SAFE
Analyzed
May 6, 2026, 08:54 AM
Security Audit — agent-trust-hub — ast-grep