gate-news-communityscan
Pass
Audited by Gen Agent Trust Hub on May 5, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill's maintenance scripts (update-skill.sh and update-skill.ps1) fetch version metadata and updated components from the official Gate GitHub repository (github.com/gate/gate-skills). These operations are part of the documented maintenance workflow provided by the vendor.
- [COMMAND_EXECUTION]: The maintenance utilities use local shell commands such as git, curl, wget, unzip, tar, and cp to manage skill file updates. These operations are transparently documented and occur within the skill's local directory and designated agent installation roots.
- [REMOTE_CODE_EXECUTION]: The skill implements a self-update mechanism that replaces local instructions with code from the publisher's GitHub. This behavior is a standard feature of the vendor's deployment model, uses verified sources, and includes security measures like confirmation tokens.
Audit Metadata