skills/kevinzai/cc-commander/ccc-saas/Gen Agent Trust Hub

ccc-saas

Pass

Audited by Gen Agent Trust Hub on Apr 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill includes several Python scripts (schema_analyzer.py, index_optimizer.py, migration_generator.py, metrics_calculator.py, etc.) for local data processing and analysis. These scripts were audited and found to use only standard libraries, with no network access, subprocess execution, or dynamic code evaluation capabilities.
  • [SAFE]: All instructional content was scanned for prompt injection, obfuscation, and malicious behavior patterns. No indicators of adversarial intent were detected; the guides promote standard security practices such as webhook signature verification and environment variable management.
  • [SAFE]: The development workflows described in the skill utilize well-known, reputable packages and frameworks (Next.js, Fastify, Stripe, Better Auth). Commands involving remote package execution (e.g., pnpm dlx shadcn) target established technology providers.
  • [SAFE]: Metadata and author context are consistent with the branding and purpose of the skill. No suspicious third-party resources or typosquatting attempts were identified.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 1, 2026, 05:35 AM
Security Audit — agent-trust-hub — ccc-saas