sast-scan

Pass

Audited by Gen Agent Trust Hub on Jul 22, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides instructions for executing semgrep and codeql commands. These are standard, industry-standard static analysis security tools used locally for identifying vulnerabilities like injection and path traversal in source code. The usage is aligned with the skill's stated purpose.
  • [SAFE]: No malicious patterns, obfuscation, or unauthorized data handling were detected. The skill encourages best practices such as validating input and using secure APIs rather than simply suppressing warnings.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 22, 2026, 09:51 PM
Security Audit — agent-trust-hub — sast-scan