life-sync-workspaces

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: The skill consists entirely of instructional Markdown and evaluation metadata. It does not include any scripts, executables, or binary files.
  • [PROMPT_INJECTION]: The instructions contain an 'Iron Law' that strictly forbids autonomous creation or deletion of files, reinforcing the agent's role as an advisory assistant rather than an autonomous actor.
  • [DATA_EXFILTRATION]: No network operations, external URLs, or data transmission patterns were identified. The skill's scope is limited to local disk reconciliation based on user-provided configuration.
  • [COMMAND_EXECUTION]: There are no shell commands, subprocess calls, or dynamic context injections (e.g., backtick commands) in the provided files.
  • [PRIVILEGE_ESCALATION]: The skill explicitly defines a 'Secretary' role which limits the agent's authority, requiring explicit 'grants' for any action that affects the material state of the system.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 05:22 AM
Security Audit — agent-trust-hub — life-sync-workspaces