secure-scan
Pass
Audited by Gen Agent Trust Hub on Jul 2, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: The skill's components, including the orchestration script and documentation, were analyzed for all 10 threat categories and found to be free of malicious patterns.
- [COMMAND_EXECUTION]: The skill includes a bash script 'scripts/secure-scan.sh' designed to execute established security tools such as Gitleaks, Semgrep, and Trivy on a local project directory for analysis.
- [EXTERNAL_DOWNLOADS]: The documentation and CI/CD references utilize official resources from trusted providers including Microsoft (CodeQL), Aquasecurity (Trivy), and Semgrep.
Audit Metadata