rightcode-to-prd
Pass
Audited by Gen Agent Trust Hub on May 13, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill follows established developer workflows for repository exploration and documentation. It contains no obfuscated code, unauthorized data exfiltration patterns, or attempts to bypass safety constraints. While the skill ingests conversation context (untrusted data) to populate a PRD template, this is its primary intended purpose and is handled as a structured content generation task rather than an execution task. The reference to the
/setup-matt-pocock-skillscommand is an internal dependency for configuration and does not constitute a remote code execution risk.
Audit Metadata