bootstrap-project
Pass
Audited by Gen Agent Trust Hub on Sep 22, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill consists entirely of human-readable documentation and procedural guidelines for starting new projects. It guides the agent on how to interact with the user to select tech stacks and directory structures.
- [NO_CODE]: There are no executable scripts, shell commands, or automated configuration steps included in the skill file. All actions described are intended to be performed via conversation or manual setup by the user.
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to process user input for technical decisions. However, since the skill has no executable capabilities (no file writes, network calls, or tool invocations) and explicitly sets
disable-model-invocation: true, there is no risk of input being used to trigger malicious actions.
Audit Metadata