asc-shots-pipeline

Pass

Audited by Gen Agent Trust Hub on Apr 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSDATA_EXFILTRATION
Full Analysis
  • [COMMAND_EXECUTION]: Orchestrates complex iOS development workflows by executing system-level commands including xcodebuild for app compilation and xcrun simctl for simulator management and locale configuration.
  • [COMMAND_EXECUTION]: Utilizes the asc and axe CLI tools to drive UI interactions and process screenshots based on local JSON configuration files (.asc/shots.settings.json and .asc/screenshots.json).
  • [COMMAND_EXECUTION]: Employs parallel execution patterns using bash background processes and xargs -P to handle multi-locale captures simultaneously across multiple simulator instances.
  • [EXTERNAL_DOWNLOADS]: Instructs the user to install the koubou Python package (pinned to version 0.18.1) via pip and triggers remote asset downloads for device frames using the kou setup-frames command.
  • [DATA_EXFILTRATION]: Performs legitimate data transmission by uploading generated screenshot artifacts to App Store Connect using the asc screenshots upload command.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 17, 2026, 08:11 PM