sdd-apply

Pass

Audited by Gen Agent Trust Hub on Jul 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill follows a standard software development lifecycle, focusing on reading requirements and implementing code changes. All operations are consistent with the intended use case.
  • [COMMAND_EXECUTION]: The skill identifies and uses test runners based on project configuration (e.g., package.json, config.yaml). This is a legitimate development function and does not involve arbitrary command execution or shell injection patterns.
  • [DATA_EXPOSURE]: Analysis of the skill instructions confirms that it only accesses project-related files like tasks.md, design.md, and source code. No sensitive system files or credentials are targeted.
  • [PROMPT_INJECTION]: The skill contains no instructions designed to bypass agent constraints or override safety guidelines. It adheres to a structured, task-oriented instructional framework.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 21, 2026, 12:23 AM
Security Audit — agent-trust-hub — sdd-apply