openspec-verify-change
Pass
Audited by Gen Agent Trust Hub on May 13, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: Uses the
openspecCLI tool to list changes, check status, and retrieve instructions. These commands are used to gather context within the local project environment. - [SAFE]: The skill follows a well-defined process of reading local documentation (tasks.md, specs, design.md) and searching the codebase to generate a verification report. No network exfiltration, obfuscation, or malicious instructions were detected.
- [SAFE]: Requirement for user selection in step 1 ('Do NOT guess or auto-select a change') prevents automated execution against unintended targets and mitigates potential command injection from unvetted change names.
Audit Metadata