security-auditor
Pass
Audited by Gen Agent Trust Hub on May 13, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to execute standard security auditing and dependency scanning tools, such as
npm audit,pip-audit, andbundler-audit, to identify known vulnerabilities. - [EXTERNAL_DOWNLOADS]: Fetches Software Bill of Materials (SBOM) generation tools, including
@cyclonedx/cyclonedx-npmandcyclonedx-ruby, from official package registries to perform supply chain analysis. - [SAFE]: The instructions define a legitimate security audit protocol aligned with OWASP Top 10 guidelines. No evidence of prompt injection, credential exfiltration, or obfuscated malicious code was detected across the provided files.
Audit Metadata