marko-5-to-6-migration
Pass
Audited by Gen Agent Trust Hub on Jul 30, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's primary function is to guide a developer or AI agent through a manual code migration process. All provided shell commands are for local inventory and assessment (e.g., grep, find, npm ls) and do not perform network operations or access sensitive system files outside the project scope.
- [COMMAND_EXECUTION]: The skill provides shell commands for inventorying the project (e.g., find, grep, npm ls) and updating dependencies (npm i). These are standard development operations required for the migration process and do not exhibit malicious intent.
- [PROMPT_INJECTION]: The skill involves reading and processing local source code files. While this creates a theoretical surface for indirect prompt injection from malicious code within the project being migrated, this is an inherent risk of code-analysis tools and no malicious overrides were found in the skill itself.
Audit Metadata