guide-macos-spm-packaging

Pass

Audited by Gen Agent Trust Hub on Jul 5, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [SAFE]: The skill provides a legitimate technical workflow for macOS developers. No malicious behavior such as data exfiltration, credential theft, or unauthorized persistence was identified.
  • [COMMAND_EXECUTION]: The template scripts (e.g., package_app.sh, sign-and-notarize.sh, setup_dev_signing.sh) execute standard macOS development tools like swift, codesign, security, and xcrun to automate the build, signing, and notarization process. These operations are transparent and consistent with the skill's stated purpose.
  • [SAFE]: Instruction content is focused on technical documentation and does not attempt to override agent safety guidelines or perform unauthorized actions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 5, 2026, 03:29 PM
Security Audit — agent-trust-hub — guide-macos-spm-packaging