freeze
Pass
Audited by Gen Agent Trust Hub on Oct 2, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses shell scripts (
check-freeze.shandfreeze-state.sh) triggered by hooks or user commands to manage and enforce the directory restriction boundary. - Evidence:
SKILL.mddefines hooks for theEditandWritetools that executebash $HOME/.claude/skills/gstack/freeze/bin/check-freeze.sh. - Evidence:
SKILL.mdinstructs the agent to runbash "$HOME/.claude/skills/gstack/freeze/bin/freeze-state.sh" set "<user-provided-path>"to establish the boundary. - [REMOTE_CODE_EXECUTION]: The skill mentions a
bun run gen:skill-docscommand in a comment, but this is documentation metadata and not an automated execution of remote code within the skill's runtime instructions. - [DATA_EXFILTRATION]: The skill contains a snippet that appends usage data to a local file (
~/.gstack/analytics/skill-usage.jsonl). As this targets a local file and does not involve network operations, it is considered safe logging behavior.
Audit Metadata