developer-platform-kickoff

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill operates as a high-level router and strategy guide. It facilitates task routing by reading local project metadata (git logs, file inventories, and a local context file) to provide tailored recommendations for developer platform engineering.
  • [CREDENTIALS_SAFE]: Section 6 (Memory) contains explicit security guardrails that prohibit the storage of sensitive information, including API keys, client secrets, signing keys, unannounced sunset dates, and unpatched security findings. This ensures that the skill's persistence mechanism does not inadvertently leak credentials.
  • [DATA_EXPOSURE]: The skill uses a local markdown file (developer-platform-context.md) for session persistence. The instructions specifically guide the agent to exclude PII (Partner or customer names) and sensitive contract terms (take-rates) from this file and from persistent memory.
  • [NO_CODE]: The skill consists entirely of natural language instructions and evaluation data. It does not contain or execute any scripts, binary files, or external code dependencies.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 09:17 PM
Security Audit — agent-trust-hub — developer-platform-kickoff