cowork-bible
Pass
Audited by Gen Agent Trust Hub on Apr 1, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is entirely instructional and does not contain any executable scripts, scripts to be installed, or automated background processes.\n- [COMMAND_EXECUTION]: Documentation includes examples of terminal commands such as 'git log' and 'npm audit' within task configuration templates. These are presented for educational purposes and are coupled with instructions on how to use platform allowlists to restrict command execution safely.\n- [DATA_EXPOSURE_AND_EXFILTRATION]: The skill includes a dedicated 'Security Considerations' section that explicitly warns against providing access to sensitive files (e.g., .env, credentials, .pem) and provides configuration snippets to deny access to these paths.\n- [SAFE]: No obfuscation, prompt injection, or suspicious remote dependency patterns were identified in the metadata or instructional content.
Audit Metadata