using-skills

Pass

Audited by Gen Agent Trust Hub on Jul 15, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill-run utility provides a mechanism for the agent to execute shell scripts located within its skills directory. It resolves relative paths and uses the exec command to launch scripts with provided arguments.
  • [SAFE]: The find-skills tool logs search query patterns and timestamps to a local search-log.jsonl file in the user's config directory. This persists search history locally but does not involve network exfiltration or access to sensitive user credentials.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 15, 2026, 06:07 PM
Security Audit — agent-trust-hub — using-skills