secops-setup-antigravity

Pass

Audited by Gen Agent Trust Hub on Sep 26, 2026

Risk Level: SAFECOMMAND_EXECUTIONCREDENTIALS_UNSAFE
Full Analysis
  • Command Execution: The skill instructs the agent to execute the gcloud CLI to generate access tokens. This is a standard method for authenticating with Google Cloud services during setup tasks.
  • Credential Handling: The skill generates a temporary bearer token and stores it within a local JSON configuration file. While storing credentials in files is a security consideration, the skill specifically targets the local configuration directory for the Antigravity tool and notes the temporary nature of the token.
  • File Access: The skill accesses the user's home directory to modify ~/.gemini/antigravity/mcp_config.json. This access is necessary to perform the requested configuration and merge new settings without overwriting existing ones.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 26, 2026, 06:50 PM
Security Audit — agent-trust-hub — secops-setup-antigravity