golang-samber-oops

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references the official GitHub repository and documentation for the samber/oops library (github.com/samber/oops and pkg.go.dev). These are legitimate vendor resources provided by the skill author.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: The documentation describes features for attaching HTTP requests and responses to errors (including bodies). While this can capture sensitive information in logs, the skill correctly labels this as an optional feature for debugging and structured logging, consistent with standard observability practices.
  • [COMMAND_EXECUTION]: The skill configuration restricts shell access to specific Go-related tools (go, golangci-lint, git, godig, gopls), which is a secure implementation of the least privilege principle for a Go development skill.
  • [PROMPT_INJECTION]: No attempts to override agent safety guidelines or bypass instructions were found. The instructional content is strictly focused on Go programming patterns.
  • [SAFE]: The skill follows best practices for secret management, specifically advising against variable interpolation in error messages to maintain low-cardinality for APM (Application Performance Monitoring) systems.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 11:34 AM
Security Audit — agent-trust-hub — golang-samber-oops