openspec-verify-change

Pass

Audited by Gen Agent Trust Hub on May 13, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: Uses the openspec CLI tool to list changes, check status, and retrieve instructions. These commands are used to gather context within the local project environment.
  • [SAFE]: The skill follows a well-defined process of reading local documentation (tasks.md, specs, design.md) and searching the codebase to generate a verification report. No network exfiltration, obfuscation, or malicious instructions were detected.
  • [SAFE]: Requirement for user selection in step 1 ('Do NOT guess or auto-select a change') prevents automated execution against unintended targets and mitigates potential command injection from unvetted change names.
Audit Metadata
Risk Level
SAFE
Analyzed
May 13, 2026, 01:38 AM