python-craftsman

Pass

Audited by Gen Agent Trust Hub on Sep 26, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides high-level architectural and engineering guidance for Python development. Technical analysis found no evidence of malicious intent, prompt injection, or data exfiltration attempts.\n- [SAFE]: Security is integrated into the core pillars: the skill explicitly forbids hardcoding or logging secrets and provides patterns for validating configuration at application startup.\n- [SAFE]: Subprocess execution is handled securely in the technical references, mandating the use of argument lists instead of shell strings to prevent command injection, alongside mandatory timeouts and bounded output capture.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 26, 2026, 01:12 AM