postplus-shared

Pass

Audited by Gen Agent Trust Hub on May 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is composed entirely of markdown reference files that define principle-level rules, routing preferences, and workflow standards for a family of marketing-oriented skills.
  • [SAFE]: Explicit safety rules are defined in shared-public-skill-rules.md and shared-ads-workflow.md, including prohibitions against probing environment variables, requirements for human-in-the-loop approval for spend-affecting actions, and mandates to use vendor-supported scripts over ad-hoc shell commands.
  • [SAFE]: User interaction guidelines in shared-user-guidance.md focus on transparency and professional communication. The instructions prioritize honest failure reporting and prevent the agent from making false claims about data access or task completion.
  • [SAFE]: The 'Local Dependency Bootstrap Rule' identifies standard media processing tools (yt-dlp, ffmpeg) as required dependencies. While it guides the agent to ensure these are installed, it does not execute arbitrary remote code or provide unverified installation sources.
Audit Metadata
Risk Level
SAFE
Analyzed
May 17, 2026, 01:49 AM
Security Audit — agent-trust-hub — postplus-shared