openspec-ff

Pass

Audited by Gen Agent Trust Hub on Jun 23, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill manages internal project documentation within a defined file structure ('openspec/changes/'). It facilitates the creation of markdown files based on user-provided feature names.
  • [SAFE]: No network operations, credential handling, or dynamic code execution patterns are present in the skill definitions.
  • [SAFE]: External references point to the OpenSpec project documentation on GitHub.
  • [SAFE]: While the skill ingests content from previously created artifacts to maintain context (Indirect Prompt Injection surface), the capabilities are limited to local file writing of documentation, presenting a negligible security risk in its current scope.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 23, 2026, 04:11 PM
Security Audit — agent-trust-hub — openspec-ff