skills/garrytan/gstack/freeze/Gen Agent Trust Hub

freeze

Pass

Audited by Gen Agent Trust Hub on Oct 2, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses shell scripts (check-freeze.sh and freeze-state.sh) triggered by hooks or user commands to manage and enforce the directory restriction boundary.
  • Evidence: SKILL.md defines hooks for the Edit and Write tools that execute bash $HOME/.claude/skills/gstack/freeze/bin/check-freeze.sh.
  • Evidence: SKILL.md instructs the agent to run bash "$HOME/.claude/skills/gstack/freeze/bin/freeze-state.sh" set "<user-provided-path>" to establish the boundary.
  • [REMOTE_CODE_EXECUTION]: The skill mentions a bun run gen:skill-docs command in a comment, but this is documentation metadata and not an automated execution of remote code within the skill's runtime instructions.
  • [DATA_EXFILTRATION]: The skill contains a snippet that appends usage data to a local file (~/.gstack/analytics/skill-usage.jsonl). As this targets a local file and does not involve network operations, it is considered safe logging behavior.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 2, 2026, 11:11 PM
Security Audit — agent-trust-hub — freeze