run-scan
Pass
Audited by Gen Agent Trust Hub on Jun 16, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill invokes the
opentaint scanCLI tool to perform security analysis on project source code or pre-compiled models. This is the primary and legitimate purpose of the skill. - [DATA_EXPOSURE]: The skill accesses local project files and directories (such as
.opentaint/) to perform its scan. It writes results to the local filesystem in SARIF format. No network exfiltration or credential harvesting patterns were identified.
Audit Metadata