oh-capi-xts-gen

Pass

Audited by Gen Agent Trust Hub on May 2, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses shell scripts and Python subprocesses to manage the OpenHarmony XTS build lifecycle. It implements regex-based validation (e.g., in scripts/async_build.sh) to ensure that test suite and product names contain only safe characters, mitigating potential command injection risks.\n- [EXTERNAL_DOWNLOADS]: Environment setup documentation includes fetching installation scripts and cloning repositories from well-known developer platforms, specifically nodesource.com for Node.js and GitHub for NVM and OpenHarmony manifests.\n- [REMOTE_CODE_EXECUTION]: The skill provides automated commands for setting up a Linux build environment by downloading and piping scripts from trusted sources (NodeSource and NVM) to prepare the build system.
Audit Metadata
Risk Level
SAFE
Analyzed
May 2, 2026, 01:09 PM