ccc-saas
Pass
Audited by Gen Agent Trust Hub on Apr 1, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill includes several Python scripts (
schema_analyzer.py,index_optimizer.py,migration_generator.py,metrics_calculator.py, etc.) for local data processing and analysis. These scripts were audited and found to use only standard libraries, with no network access, subprocess execution, or dynamic code evaluation capabilities. - [SAFE]: All instructional content was scanned for prompt injection, obfuscation, and malicious behavior patterns. No indicators of adversarial intent were detected; the guides promote standard security practices such as webhook signature verification and environment variable management.
- [SAFE]: The development workflows described in the skill utilize well-known, reputable packages and frameworks (Next.js, Fastify, Stripe, Better Auth). Commands involving remote package execution (e.g.,
pnpm dlx shadcn) target established technology providers. - [SAFE]: Metadata and author context are consistent with the branding and purpose of the skill. No suspicious third-party resources or typosquatting attempts were identified.
Audit Metadata