refactoring-packages
Pass
Audited by Gen Agent Trust Hub on May 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious intent or suspicious instructions were detected. The skill's operations are consistent with its stated purpose of improving code structure and module separation.\n- [COMMAND_EXECUTION]: The skill uses tools including
mcp__serena__list_dirandmcp__serena__get_symbols_overviewinSKILL.mdto map out the codebase. These tools are used solely for inspecting project metadata and symbols for refactoring purposes.\n- [PROMPT_INJECTION]: An indirect prompt injection surface is present because the skill processes untrusted source code. Ingestion occurs via themcp__serenatools mentioned inSKILL.md. Boundary markers and sanitization logic are absent, which theoretically allows malicious comments in the code to influence refactoring decisions. However, given the primary purpose and local scope of the capabilities (file movement and import updates), the risk is minimal.
Audit Metadata