version-migration-guide

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of a collection of Markdown-based guidelines, templates, and reference materials for documenting software migrations. It does not perform any file system modifications, network requests, or command executions.
  • [NO_CODE]: No scripts (Python, Node.js, Shell, etc.) are included in the skill. All logic is contained within natural language instructions and evaluation data.
  • [REMOTE_CODE_EXECUTION]: The skill references several well-known migration tools and package managers (such as jscodeshift, OpenRewrite, cargo, and npm). These are mentioned solely as examples for the user to include in their documentation or as references to industry standard practices. No remote code is downloaded or executed by the skill itself.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process user descriptions of API changes to generate documentation. While it ingests untrusted data, it lacks any executable capabilities that could be exploited via injection, and its output is limited to text generation for the user's review.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 09:14 PM
Security Audit — agent-trust-hub — version-migration-guide