skills/doist/twist-cli/add-command/Gen Agent Trust Hub

add-command

Pass

Audited by Gen Agent Trust Hub on Aug 16, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a documentation resource providing implementation guidelines for a CLI tool. It does not contain any functional code or scripts that could be executed maliciously.
  • [COMMAND_EXECUTION]: The skill references standard development lifecycle commands such as 'npm run build', 'npm test', and 'npm run lint:check'. These are benign references to project-specific tooling intended for developers.
  • [CREDENTIALS_SAFE]: The document mentions authentication concepts like OAuth tokens and read-only logins as part of the CLI's logic but does not contain or request any hardcoded credentials or secrets.
  • [DATA_EXFILTRATION]: No exfiltration patterns were detected. The skill actually encourages security best practices by documenting a default-deny approach for API permissions ('KNOWN_SAFE_API_METHODS').
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 16, 2026, 07:12 AM
Security Audit — agent-trust-hub — add-command