dependency-auditor

Pass

Audited by Gen Agent Trust Hub on Apr 12, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides auditing tools focused on vulnerability scanning and license compliance. All scripts are implemented using the Python standard library, avoiding the use of external packages or remote code execution risks.
  • [SAFE]: Data analysis is performed locally on project manifest files (e.g., package.json, requirements.txt). No sensitive file access beyond the scope of project dependencies was observed, and no data exfiltration patterns were detected.
  • [SAFE]: The skill contains no prompt injection, behavior overrides, or malicious role-play instructions. The documentation and scripts are consistent with their stated purpose.
  • [SAFE]: No obfuscation, persistence mechanisms, or privilege escalation patterns were found in any of the provided scripts or documentation files.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 12, 2026, 08:16 AM
Security Audit — agent-trust-hub — dependency-auditor