codebase-onboarding

Pass

Audited by Gen Agent Trust Hub on Sep 8, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill focuses entirely on documentation and repository onboarding procedures. Commands used for codebase analysis (using standard tools like find, cat, jq, du, and grep) are legitimate for understanding project structure.
  • [SAFE]: While the skill contains examples of using curl and npm commands, these are clearly marked as documentation templates or developer guides for common tasks (like setup, API calls, or documentation exports).
  • [SAFE]: Mention of environment variables like NOTION_TOKEN or CONFLUENCE_TOKEN occurs within the context of explaining how to automate documentation exports to official developer services, which is a standard and expected use case for this skill's stated purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 8, 2026, 06:55 AM
Security Audit — agent-trust-hub — codebase-onboarding