add-command
Pass
Audited by Gen Agent Trust Hub on Aug 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is a documentation resource providing implementation guidelines for a CLI tool. It does not contain any functional code or scripts that could be executed maliciously.
- [COMMAND_EXECUTION]: The skill references standard development lifecycle commands such as 'npm run build', 'npm test', and 'npm run lint:check'. These are benign references to project-specific tooling intended for developers.
- [CREDENTIALS_SAFE]: The document mentions authentication concepts like OAuth tokens and read-only logins as part of the CLI's logic but does not contain or request any hardcoded credentials or secrets.
- [DATA_EXFILTRATION]: No exfiltration patterns were detected. The skill actually encourages security best practices by documenting a default-deny approach for API permissions ('KNOWN_SAFE_API_METHODS').
Audit Metadata