jurisdiction-scaffold

Pass

Audited by Gen Agent Trust Hub on Jul 9, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's primary function is to create a specific directory and file structure ('jurisdiction pack') within a project. It uses local relative paths such as 'references/jurisdictions/' and 'shared/'.
  • [PROMPT_INJECTION]: No evidence of prompt injection, role-play overrides, or attempts to bypass safety filters were found in the instructions.
  • [DATA_EXFILTRATION]: There are no network operations (curl, wget, fetch) or signs of sensitive data exposure. The skill operates exclusively on creating documentation stubs and JSON manifest files.
  • [REMOTE_CODE_EXECUTION]: The skill does not download external scripts or packages. It is restricted by 'disable-model-invocation: true', which limits its capability to purely procedural scaffolding tasks.
  • [COMMAND_EXECUTION]: No shell commands, privilege escalation (sudo), or persistence mechanisms were detected in the provided file.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 9, 2026, 02:12 PM
Security Audit — agent-trust-hub — jurisdiction-scaffold