mvpfy-progress

Pass

Audited by Gen Agent Trust Hub on Aug 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is designed to perform read-only analysis of project-specific files such as .mvpfy/state.json and MVP.md to generate status reports. It does not have permissions or instructions to write to the filesystem or modify project data.
  • [SAFE]: No network operations, external downloads, or remote code execution patterns were detected. The skill does not reference any external URLs or third-party dependencies.
  • [SAFE]: The skill follows the principle of least privilege by explicitly instructing the agent to ignore sensitive directories and files (e.g., specs/, backlog/) that are not relevant to the progress calculation.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 17, 2026, 12:19 PM
Security Audit — agent-trust-hub — mvpfy-progress