openspec-ff
Pass
Audited by Gen Agent Trust Hub on Jun 23, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill manages internal project documentation within a defined file structure ('openspec/changes/'). It facilitates the creation of markdown files based on user-provided feature names.
- [SAFE]: No network operations, credential handling, or dynamic code execution patterns are present in the skill definitions.
- [SAFE]: External references point to the OpenSpec project documentation on GitHub.
- [SAFE]: While the skill ingests content from previously created artifacts to maintain context (Indirect Prompt Injection surface), the capabilities are limited to local file writing of documentation, presenting a negligible security risk in its current scope.
Audit Metadata