lint-and-validate

Pass

Audited by Gen Agent Trust Hub on Jul 15, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The scripts/lint_runner.py script executes system commands including npm, npx, ruff, and mypy using subprocess.run. The implementation follows security best practices by passing arguments as a list and maintaining shell=False, which prevents command injection from the project path variable.
  • [PROMPT_INJECTION]: The skill presents an indirect prompt injection surface because it executes scripts derived from local project configuration files (e.g., package.json).
  • Ingestion points: Reads project configuration files (package.json, pyproject.toml) and source files (.ts, .py) from the target directory in scripts/lint_runner.py and scripts/type_coverage.py.
  • Boundary markers: No explicit markers are used to isolate untrusted file content from the execution logic.
  • Capability inventory: The skill is capable of shell command execution via subprocess.run in scripts/lint_runner.py.
  • Sanitization: While the invocation method is safe, the skill does not validate the content of the commands defined within the project's own configuration files, such as custom npm lint scripts.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 15, 2026, 08:28 PM
Security Audit — agent-trust-hub — lint-and-validate