ralph

Pass

Audited by Gen Agent Trust Hub on Jun 18, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's primary function is data transformation and project structure setup. It uses basic shell commands (mkdir, touch) to organize local project files.
  • [SAFE]: No network activity, credential usage, or suspicious obfuscation patterns were detected in the instructions or metadata.
  • [SAFE]: While the skill reads external PRD files (a surface for indirect prompt injection), its capabilities are restricted to writing data to local JSON and text files, posing no significant security risk to the host environment.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 18, 2026, 11:56 PM
Security Audit — agent-trust-hub — ralph