fish-shell

Pass

Audited by Gen Agent Trust Hub on Jun 18, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill exclusively provides technical documentation and code templates for the Fish shell. Analysis of the instructions and examples confirms they follow security best practices, such as dependency checking and explicit error handling.
  • [COMMAND_EXECUTION]: The skill contains examples of shell commands like rm, eval, and rsync. These are used within legitimate contexts for shell scripting guidance, such as interactive file selection or deployment workflows, and are presented as templates for the user.
  • [EXTERNAL_DOWNLOADS]: Recommends installing well-known and trusted utilities (e.g., gum, ffmpeg, imagemagick) via the Homebrew package manager. No suspicious or untrusted sources are referenced.
  • [DATA_EXFILTRATION]: Documentation regarding shell configuration files (e.g., ~/.config/fish/) follows standard practices and does not include any patterns for credential harvesting, sensitive file exposure, or unauthorized network operations.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 18, 2026, 02:58 PM
Security Audit — agent-trust-hub — fish-shell