nextstage-harness

Pass

Audited by Gen Agent Trust Hub on Jul 24, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill uses npx @nextstage-brasil/harness for project rule synchronization and harness management. This is a vendor-owned resource belonging to the skill author and is used for legitimate configuration tasks.
  • [COMMAND_EXECUTION]: Employs shell commands for git operations (worktree isolation, commits) and docker container execution for testing. The instructions include robust safety measures, such as mandatory user confirmation for container management and execution timeouts.
  • [SAFE]: The skill demonstrates professional security posture by requiring explicit human confirmation gates before proceeding with automated task generation and enforcing strict isolation of code changes using git worktrees.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 24, 2026, 05:00 PM
Security Audit — agent-trust-hub — nextstage-harness