best-practices-sparta

Pass

Audited by Gen Agent Trust Hub on Aug 26, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill includes references to command-line tools for debugging and validation purposes.
  • Evidence: curl /list {collection: sparta_relationships, limit: 10} is provided in SKILL.md as a debugging step for ArangoDB.
  • Evidence: fixtures/agentic_eval.json contains a command ["python3", "../../best-practices-skills/scripts/validate_skill.py", "..", "--json"] used to perform static contract validation of the skill itself.
  • Context: These executions are restricted to local environment debugging and internal project validation scripts within a structured development workflow.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: While the skill mentions ArangoDB collections and data models, it does so for architectural guidance and does not expose sensitive credentials or perform external network exfiltration.
  • Context: The data models described (sparta_controls, sparta_relationships, etc.) are part of the internal project's design documentation.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 26, 2026, 06:00 PM
Security Audit — agent-trust-hub — best-practices-sparta