skills/ericrisco/rsc-harness/ruby/Gen Agent Trust Hub

ruby

Pass

Audited by Gen Agent Trust Hub on Aug 6, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [SAFE]: The skill focuses on promoting high-quality Ruby code using modern idioms like Enumerable, Data objects, and proper module composition, avoiding common pitfalls and insecure coding practices.
  • [SAFE]: Explicitly instructs the agent to avoid using eval on user-derived input, effectively mitigating a major class of Remote Code Execution (RCE) vulnerabilities.
  • [COMMAND_EXECUTION]: Includes a shell script (scripts/verify.sh) for performing syntax checks and linting on Ruby source files. The script is well-authored with safety in mind, using null-terminated strings for file handling and limiting its operations to local syntax validation.
  • [EXTERNAL_DOWNLOADS]: Documents the use of standard, well-known Ruby package registries (RubyGems) and the Bundler tool for dependency management. These references are consistent with standard professional development workflows.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 6, 2026, 09:48 PM
Security Audit — agent-trust-hub — ruby