spec-driven-development
Pass
Audited by Gen Agent Trust Hub on May 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists entirely of instructional text and markdown templates designed to guide the AI agent through a four-phase development lifecycle (Specify, Plan, Tasks, Implement).
- [SAFE]: No executable scripts (.sh, .py, .js) are included. The shell commands mentioned (e.g., 'npm run build', 'npm test') are provided as illustrative examples within documentation templates and are not intended for automatic execution by the skill itself.
- [SAFE]: The workflow emphasizes human-in-the-loop validation at every stage, which serves as a significant security control against unintended agent behavior.
- [SAFE]: There are no indicators of data exfiltration, credential harvesting, or obfuscation. All instructions are transparent and align with software engineering best practices.
Audit Metadata