recipe-plugin-compliance
Pass
Audited by Gen Agent Trust Hub on Jul 11, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: Executes several local management scripts via 'python3 .plan/execute-script.py'. These scripts are used to resolve skill references, list marketplace modules, and manage plan status. These commands are executed within a local, vendor-controlled directory structure.
- [PROMPT_INJECTION]: Incorporates user-provided parameters for scan 'thoroughness' and 'scope'. These inputs are validated by local scripts and expanded into instructions that guide the depth of the architectural compliance check, representing a surface for indirect instruction influence.
Audit Metadata