skill-developer

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns, obfuscation, or unauthorized network operations were detected. The skill facilitates legitimate developer workflows.
  • [COMMAND_EXECUTION]: The skill uses local shell commands like cp, cat, and ls to manage files within the $CLAUDE_PROJECT_DIR. These are standard operations for a development-focused skill.
  • [DYNAMIC_EXECUTION]: Provides instructions for running local scripts using uv run. These scripts are intended to be created and reviewed by the developer within their own project environment.
  • [INDIRECT_PROMPT_INJECTION]: While the skill takes user input to generate new skill definitions, it operates as a template-driven generator for local development files, presenting a low risk for exploitation in this context.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 05:11 PM
Security Audit — agent-trust-hub — skill-developer