dstack-beads-setup-project

Pass

Audited by Gen Agent Trust Hub on Aug 29, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill triggers shell commands using a relative path to the dstack binary. The commands include setup plan, setup apply, and setup doctor to initialize and validate project state within a Git repository.
  • [INDIRECT_PROMPT_INJECTION]: The skill operates on the current working directory, which could contain untrusted project files. The instructions require the agent to review plan objects and verify digests, and explicitly forbid automatic commits, ensuring human-in-the-loop review of the repository changes.
  • [DATA_EXFILTRATION]: The skill mentions optional GitHub integration via the gh CLI for pull request delivery. This is a standard developer workflow and no unauthorized data transmission patterns were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 29, 2026, 12:02 AM
Security Audit — agent-trust-hub — dstack-beads-setup-project