context-driven-development

Pass

Audited by Gen Agent Trust Hub on May 11, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: The skill consists entirely of Markdown templates and instructional guidelines for project documentation. It does not include any executable scripts, binaries, or active code components.
  • [SAFE]: No patterns of data exfiltration, credential harvesting, or network operations were detected. The skill operates primarily by instructing the agent to read and write Markdown files within the local project directory.
  • [SAFE]: The installation instructions provided in the README use standard package manager commands (npx) to fetch content from public repositories. While these point to external sources, they are part of the setup documentation for the user and not code executed by the skill at runtime.
  • [SAFE]: The skill provides a structured workflow for agents to ingest codebase metadata (e.g., package.json, requirements.txt) to generate context. While this represents a data ingestion surface, it is the primary intended function of the documentation methodology and does not introduce malicious behavior or safety bypasses.
Audit Metadata
Risk Level
SAFE
Analyzed
May 11, 2026, 10:49 AM
Security Audit — agent-trust-hub — context-driven-development