commandbox-config-settings
Pass
Audited by Gen Agent Trust Hub on Apr 15, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill documents the
nativeShellconfiguration setting, which allows users to specify the system shell (e.g., /bin/bash, /bin/zsh) used by the tool to execute OS-level commands.\n- [CREDENTIALS_UNSAFE]: The instructions explain how to manage sensitive information such as ForgeBox API tokens and proxy credentials. All examples provided use clearly identifiable placeholders (e.g., 'your-secret-api-token', 'mypassword') rather than hardcoded secrets.\n- [DATA_EXFILTRATION]: The skill demonstrates how to view and export the CommandBox global configuration file (~/.CommandBox/CommandBox.json). While this file may contain sensitive data, the documentation describes intended administrative functionality for the CommandBox environment.
Audit Metadata