opencode-workflow-skills

Pass

Audited by Gen Agent Trust Hub on Jun 13, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to create a local directory structure for storing skill configurations using standard shell commands (mkdir -p).
  • [SAFE]: The described workflows involve interacting with local data sources such as Obsidian notes, Git repositories, and dotfile managers (chezmoi). These activities are consistent with the skill's stated purpose of providing project lifecycle automation and do not exhibit signs of malicious data exfiltration, credential harvesting, or obfuscation.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 13, 2026, 02:02 PM
Security Audit — agent-trust-hub — opencode-workflow-skills