claude-cli-runtime

Pass

Audited by Gen Agent Trust Hub on Jul 13, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill documents how to authorize and execute shell commands using the claude CLI's tool-calling capabilities, specifically facilitating Bash commands for git and npm tasks.
  • [PROMPT_INJECTION]: The skill describes a method for piping external data, such as git diff output, into the agent context via stdin. This establishes an ingestion point for untrusted data. Boundary markers are deferred to an 'active workspace authority contract' that governs external actions. The capability inventory includes Read, Grep, Glob, and Bash shell access. No specific sanitization or filtering of the interpolated data is described within the skill instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 13, 2026, 12:43 PM
Security Audit — agent-trust-hub — claude-cli-runtime