codebase-orchestrator

Pass

Audited by Gen Agent Trust Hub on Jun 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill operates under a strict 'propose-and-approve' protocol, ensuring that no code modifications are performed without explicit human authorization and review of diff previews.- [SAFE]: The instructions explicitly prioritize 'security flaws' as the highest weight in risk ranking, encouraging the agent to identify and address vulnerabilities.- [SAFE]: The skill includes robust boundary mapping instructions to exclude sensitive or irrelevant paths such as vendor directories, lockfiles, and virtual environments.- [SAFE]: Metadata configuration specifies sandbox_mode: read-only, which serves as a platform-level constraint to prevent unauthorized write operations.- [SAFE]: No evidence of credential harvesting, data exfiltration, obfuscation, or remote code execution was found in the provided instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 15, 2026, 01:40 AM
Security Audit — agent-trust-hub — codebase-orchestrator