operating-ghostty

Pass

Audited by Gen Agent Trust Hub on Aug 18, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes the installed ghostty binary to perform various diagnostic and configuration tasks, such as version checking (+version), config validation (+validate-config), and listing resources (+list-themes). These operations are restricted to the primary purpose of terminal management.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes terminal configuration files and command output from the ghostty binary. 1. Ingestion points: Ghostty configuration files and standard output from commands like +show-config. 2. Boundary markers: No specific delimiters or warnings for embedded instructions are specified. 3. Capability inventory: The skill allows executing ghostty commands and writing to local configuration files. 4. Sanitization: No explicit sanitization or validation of the ingested content is mentioned.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 18, 2026, 03:31 PM
Security Audit — agent-trust-hub — operating-ghostty