sota-shell-scripting

Pass

Audited by Gen Agent Trust Hub on Aug 5, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a pedagogical resource for writing and auditing shell scripts with a focus on security and robustness.
  • [SAFE]: The instructions explicitly warn against high-risk behaviors such as using eval on untrusted input, leaking secrets in command-line arguments, and executing unverified remote scripts (curl|bash).
  • [SAFE]: The content includes detailed best-practice templates for handling sensitive data, managing temporary files securely using mktemp, and implementing robust error handling in CI/CD environments (e.g., GitHub Actions, Docker entrypoints, and Makefiles).
  • [SAFE]: The analysis confirms that the skill does not contain any obfuscated code, data exfiltration patterns, or unauthorized remote connections; all URLs provided are illustrative placeholders or refer to well-known technology services and tools.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 5, 2026, 10:16 PM
Security Audit — agent-trust-hub — sota-shell-scripting