openspec-bulk-archive-change

Pass

Audited by Gen Agent Trust Hub on Jul 3, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill performs local file operations using mkdir and mv to move change directories into an archive folder. It also interacts with the openspec CLI tool. These actions are restricted to the local environment and the project's specific directory structure.\n- [PROMPT_INJECTION]: The skill reads content from tasks.md and delta spec files within the openspec/changes/ directory to determine archival status.\n
  • Ingestion points: Reads openspec/changes/<name>/tasks.md and openspec/changes/<name>/specs/.\n
  • Boundary markers: None are specified for the parsing of these local markdown files.\n
  • Capability inventory: The agent uses the file system (mkdir, mv) and the openspec CLI based on its analysis.\n
  • Sanitization: No explicit sanitization of the markdown content is performed before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 3, 2026, 03:12 PM
Security Audit — agent-trust-hub — openspec-bulk-archive-change