chezmoi-management

Pass

Audited by Gen Agent Trust Hub on May 14, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill guides the agent to use chezmoi for system-level configuration management. This includes modifying shell profiles (~/.zshrc), application settings (~/.config/), and agent-specific directories (~/.claude/).
  • [EXTERNAL_DOWNLOADS]: Instructions include fetching personal dotfile configurations from the author's GitHub repository (github.com/mizchi/chezmoi-dotfiles.git) and installing development tools like prek.
  • [REMOTE_CODE_EXECUTION]: The workflow utilizes chezmoi lifecycle hooks, such as run_after_apm-install.sh, which execute shell scripts and install external agent skills globally via apm (Agent Package Manager) during the configuration application phase.
  • [CREDENTIALS_SAFE]: The skill promotes security best practices by documenting the integration of secretlint into the pre-commit workflow to detect and block the accidental commitment of API keys or sensitive tokens.
Audit Metadata
Risk Level
SAFE
Analyzed
May 14, 2026, 10:31 PM
Security Audit — agent-trust-hub — chezmoi-management