lint-and-validate
Pass
Audited by Gen Agent Trust Hub on Jul 15, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The
scripts/lint_runner.pyscript executes system commands includingnpm,npx,ruff, andmypyusingsubprocess.run. The implementation follows security best practices by passing arguments as a list and maintainingshell=False, which prevents command injection from the project path variable. - [PROMPT_INJECTION]: The skill presents an indirect prompt injection surface because it executes scripts derived from local project configuration files (e.g.,
package.json). - Ingestion points: Reads project configuration files (
package.json,pyproject.toml) and source files (.ts,.py) from the target directory inscripts/lint_runner.pyandscripts/type_coverage.py. - Boundary markers: No explicit markers are used to isolate untrusted file content from the execution logic.
- Capability inventory: The skill is capable of shell command execution via
subprocess.runinscripts/lint_runner.py. - Sanitization: While the invocation method is safe, the skill does not validate the content of the commands defined within the project's own configuration files, such as custom npm lint scripts.
Audit Metadata