security-preflight

Pass

Audited by Gen Agent Trust Hub on Jul 22, 2026

Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides bash commands to execute several third-party security CLI tools, including Gitleaks, npm audit, cargo audit, OSV-Scanner, and Semgrep. These are standard tools used for repository auditing.
  • [DATA_EXFILTRATION]: The instructions include a command to search the file system for sensitive file patterns such as .env, .pem, id_rsa, credentials, and api-token. This is performed locally via git ls-files and grep specifically to identify and block the exposure of secrets in the repository history, rather than to exfiltrate them to an external source.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 22, 2026, 09:51 PM
Security Audit — agent-trust-hub — security-preflight