security-audit

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill performs extensive shell operations to audit the project environment. These include:\n
  • Using grep and find to identify potentially exposed secrets, API keys, and private keys in the source code and configuration files.\n
  • Executing git commands to inspect commit history for sensitive information previously removed from current files.\n
  • Searching for prompt injection patterns like zero-width characters, ANSI escapes, and hidden HTML comments.\n- [EXTERNAL_DOWNLOADS]: The skill leverages industry-standard security auditing tools to assess dependency health, including pip-audit for Python projects, npm audit for Node.js projects, cargo audit for Rust projects, and govulncheck for Go projects. These tools query official repositories for known vulnerabilities, which is standard behavior for an audit utility.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 07:27 AM
Security Audit — agent-trust-hub — security-audit