guide-macos-spm-packaging
Pass
Audited by Gen Agent Trust Hub on Jul 5, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [SAFE]: The skill provides a legitimate technical workflow for macOS developers. No malicious behavior such as data exfiltration, credential theft, or unauthorized persistence was identified.
- [COMMAND_EXECUTION]: The template scripts (e.g.,
package_app.sh,sign-and-notarize.sh,setup_dev_signing.sh) execute standard macOS development tools likeswift,codesign,security, andxcrunto automate the build, signing, and notarization process. These operations are transparent and consistent with the skill's stated purpose. - [SAFE]: Instruction content is focused on technical documentation and does not attempt to override agent safety guidelines or perform unauthorized actions.
Audit Metadata