cc-health
Warn
Audited by Gen Agent Trust Hub on Jun 19, 2026
Risk Level: MEDIUMCOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
- [COMMAND_EXECUTION]: The skill triggers the execution of a shell script at
~/cc-setup/health.sh. As the script is not part of the skill package, its behavior is opaque and could include any system-level commands.\n- [DATA_EXFILTRATION]: The skill reads sensitive configuration files likesettings.jsonand MCP server configurations. While the stated purpose is health verification, accessing these files provides a surface for sensitive data exposure.
Audit Metadata