cfe-init
Pass
Audited by Gen Agent Trust Hub on May 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's primary function is to generate boilerplate XML files for 1C developers. All file system operations (reading configuration and writing source files) are performed locally.
- [SAFE]: Both PowerShell and Python implementations follow secure coding practices by escaping user-provided input using standard XML escaping methods before embedding it into XML templates.
- [SAFE]: No network operations, external downloads, or remote code execution patterns were found in the scripts or instructions.
- [SAFE]: Static analysis alerts regarding homoglyphs are false positives. The Cyrillic string 'Русский' (Russian) is used appropriately for filenames and XML metadata within the 1C software ecosystem.
- [SAFE]: The skill does not attempt to escalate privileges or establish persistence on the host system.
Audit Metadata