sdd-apply
Pass
Audited by Gen Agent Trust Hub on Jul 21, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill follows a standard software development lifecycle, focusing on reading requirements and implementing code changes. All operations are consistent with the intended use case.
- [COMMAND_EXECUTION]: The skill identifies and uses test runners based on project configuration (e.g.,
package.json,config.yaml). This is a legitimate development function and does not involve arbitrary command execution or shell injection patterns. - [DATA_EXPOSURE]: Analysis of the skill instructions confirms that it only accesses project-related files like
tasks.md,design.md, and source code. No sensitive system files or credentials are targeted. - [PROMPT_INJECTION]: The skill contains no instructions designed to bypass agent constraints or override safety guidelines. It adheres to a structured, task-oriented instructional framework.
Audit Metadata