create-intent-map
Pass
Audited by Gen Agent Trust Hub on Mar 17, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill safely uses subprocess calls to interact with other components and run evaluation scripts. In
scripts/rewards/execution.py, it calls a relative path to a 'memory' skill (memory/run.sh) to perform database lookups for grounding rewards. These calls use the list-basedsubprocess.runmethod, which correctly prevents shell injection vulnerabilities. Similar patterns are found inscripts/train_grpo.pyfor running the evaluation harness. - [EXTERNAL_DOWNLOADS]: The training pipeline is configured to download model weights and tokenizers from HuggingFace Hub, which is standard behavior for fine-tuning tasks. Remote API calls are directed to well-known or local services, including Chutes (http://localhost:4001) and Ollama (http://localhost:11434).
- [CREDENTIALS_UNSAFE]: The codebase contains default development keys (e.g., 'sk-dev-proxy-123' in
scripts/rewards/relevance.py). These are clearly identified as placeholders for local proxy configurations and do not represent leaked production credentials. - [SAFE]: The core training logic implements standard reinforcement learning patterns. The presence of auto-generated files in
unsloth_compiled_cacheis a standard artifact of the Unsloth optimization library. The watchdog script (scripts/watchdog.py) is used for legitimate task monitoring and ETA calculation.
Audit Metadata