openspec-update-change

Pass

Audited by Gen Agent Trust Hub on Aug 12, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill uses a restricted toolset (limited to the openspec CLI) for the management of project planning documents and specifications.
  • [SAFE]: It contains explicit architectural guardrails that prohibit the modification of implementation code, restricting edits exclusively to concrete planning files that already exist on disk.
  • [SAFE]: The skill requires user confirmation before applying any revisions to files, providing a human-in-the-loop checkpoint for all changes.
  • [INDIRECT_PROMPT_INJECTION]: The skill reads external specification files which could potentially contain adversarial instructions. However, the risk is minimized by the skill's specific operational scope and the 'Never edit code' constraint, which prevents data-driven instructions from escalating into system-level or codebase compromise.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 12, 2026, 12:16 PM
Security Audit — agent-trust-hub — openspec-update-change