foundation-build-risk-review

Pass

Audited by Gen Agent Trust Hub on Jul 6, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists entirely of markdown documentation, examples, and reference templates. No executable scripts (.py, .js, .sh), binaries, or configuration files capable of command execution were found within the skill folder.
  • [SAFE]: No network operations (such as curl, wget, or fetch) or external data fetching mechanisms are present in the instructions. Informational links to the author's GitHub repository are neutral and provide project context.
  • [SAFE]: The skill does not attempt to access sensitive system files (~/.ssh, .env, etc.) or credentials. It operates purely on the conceptual product data provided by the user.
  • [SAFE]: No signs of obfuscation (Base64, zero-width characters), prompt injection patterns, or malicious metadata were detected across the analyzed files.
  • [SAFE]: The skill includes a 'Hard gate' instruction that explicitly forbids the agent from writing code, scaffolding projects, or recommending technology stacks, which serves as a safety constraint against unauthorized code generation.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 6, 2026, 02:56 AM
Security Audit — agent-trust-hub — foundation-build-risk-review