install

Pass

Audited by Gen Agent Trust Hub on Sep 9, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references external installation scripts for Bun from bun.sh and Claude Code from claude.ai. Both domains are recognized as well-known or trusted services for the respective software.
  • [REMOTE_CODE_EXECUTION]: Instructions guide the user to execute remote scripts via shell piping for tool setup. Because these scripts originate from trusted or well-known official sources, they are considered safe within the context of the primary skill purpose.
  • [INDIRECT_PROMPT_INJECTION]: The skill's diagnostic modes ingest data from external Slack APIs and local audit records. The skill maintains security by treating inbound data as untrusted and instructing the user on safe log management.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 9, 2026, 11:05 AM
Security Audit — agent-trust-hub — install