sequential-thinking

Pass

Audited by Gen Agent Trust Hub on Apr 11, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements a systematic reasoning process based on a known methodology. The scripts provided are helper utilities for state management and display.
  • [COMMAND_EXECUTION]: The skill uses two Node.js scripts, scripts/process-thought.js and scripts/format-thought.js, to manage thought history and format output. These scripts only perform local operations and do not execute external commands or shell scripts.
  • [DATA_EXFILTRATION]: No network activity or sensitive file access was found. The skill maintains a local .thought-history.json file for persistence, which is stored within the skill's own directory.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes agent-generated thoughts as strings. While it does not include complex sanitization, the scripts' limited capabilities (local file write and text formatting) do not provide a significant vector for privilege escalation or malicious activity.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 11, 2026, 03:42 AM
Security Audit — agent-trust-hub — sequential-thinking