ln-33-code-modernizer
Pass
Audited by Gen Agent Trust Hub on Jul 24, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill defines a methodical and safety-conscious workflow for updating codebase capabilities, incorporating rollback strategies and rigorous verification steps.
- [COMMAND_EXECUTION]: The instructions guide the agent to use repository-native tools (build scripts, linters, test suites) and standard package managers. These activities are intended for development workflows and are gated by verification requirements.
- [DATA_EXPOSURE]: The skill performs inventory tasks on local repository files, including source code, configuration, and package manifests, to analyze modernization value. This access is limited to the local environment and the skill's stated purpose.
- [INDIRECT_PROMPT_INJECTION]: The skill processes external information such as third-party documentation, package metadata, and migration guides. While this ingestion creates a surface for indirect instructions, the skill's heavy emphasis on quantitative baselines and regression testing mitigates the risk of the agent deviating from its modernization goals.
- Ingestion points: Repository files (SKILL.md), external documentation, package registries, and migration guides.
- Boundary markers: Not explicitly defined for external content.
- Capability inventory: Native file search, reading repository content, executing build/test commands via repository scripts, and running package managers.
- Sanitization: Not explicitly defined; relies on the agent's verification of metrics and tests.
Audit Metadata