cs-build-import-codebase

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill uses the official @codespring-app/cli and codespring command-line tools, which are owned by the author 'codespring'.
  • [SAFE]: The skill operates in a read-only mode for the codebase, extracting architectural information (routes, data models, components) to populate a project map on the CodeSpring platform.
  • [SAFE]: Network operations via curl are limited to official CodeSpring API endpoints for authentication and data synchronization.
  • [SAFE]: The 'background audit' mentioned is described as a read-only sub-agent task intended to identify gaps between the code and the generated documentation, which is a standard feature for development assistant tools.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 11:44 AM
Security Audit — agent-trust-hub — cs-build-import-codebase