dt-coaching-foundation

Pass

Audited by Gen Agent Trust Hub on Jun 18, 2026

Risk Level: SAFE
Full Analysis
  • Scoped File System Interaction: All project data and metadata are managed within a dedicated directory structure (".copilot-tracking/dt/{project-slug}/"). This scoping ensures that the skill's file operations are localized and do not interfere with other parts of the user's workspace.
  • Authorized System Updates: The skill includes logic for environment management, such as upgrading PowerShell. These actions are explicitly gated by user consent requirements, ensuring that the user maintains oversight over system-level changes.
  • Environment-Aware Script Execution: To facilitate PowerPoint generation, the skill identifies the active shell (PowerShell vs. Bash) and invokes the appropriate script. This logic prevents cross-platform execution errors and ensures that tools are used as intended.
  • Handling of External Data: While the skill processes user research data to generate artifacts like vision statements, it uses specific framework markers and placeholder logic (e.g., "") to ensure that outputs remain grounded in available evidence.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 18, 2026, 02:34 PM
Security Audit — agent-trust-hub — dt-coaching-foundation