recipe-plugin-compliance

Pass

Audited by Gen Agent Trust Hub on Jul 11, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: Executes several local management scripts via 'python3 .plan/execute-script.py'. These scripts are used to resolve skill references, list marketplace modules, and manage plan status. These commands are executed within a local, vendor-controlled directory structure.
  • [PROMPT_INJECTION]: Incorporates user-provided parameters for scan 'thoroughness' and 'scope'. These inputs are validated by local scripts and expanded into instructions that guide the depth of the architectural compliance check, representing a surface for indirect instruction influence.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 11, 2026, 07:12 AM
Security Audit — agent-trust-hub — recipe-plugin-compliance