guard-rails

Pass

Audited by Gen Agent Trust Hub on Apr 5, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes multiple shell commands to perform build verification (dotnet build, npx ng build, python -m py_compile) and run test suites (dotnet test, pytest, npm run test:ci). These operations are consistent with the skill's purpose as a pre-commit hook simulator.
  • [EXTERNAL_DOWNLOADS]: The script conditionally performs npm ci to restore Node.js dependencies if they are missing locally. This facilitates reliable execution of automated tests from well-known public registries.
  • [DATA_EXFILTRATION]: Implements a security check that scans git diff output for hardcoded credentials (passwords, tokens, API keys). This is an defensive mechanism designed to prevent sensitive data exposure rather than an attempt to leak data.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 5, 2026, 12:44 AM
Security Audit — agent-trust-hub — guard-rails