product-data-audit

Pass

Audited by Gen Agent Trust Hub on Mar 29, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to run CLI commands to fetch fresh metrics from external systems such as databases or APIs if they are available as part of the data collection process.\n
  • Evidence: Found in SKILL.md under the 'Collect data' section 8 ('Внешние данные').\n- [COMMAND_EXECUTION]: The agent uses the open command to automatically launch the generated HTML report in the user's default web browser.\n
  • Evidence: Found in Step 5 of SKILL.md ('Open in browser').\n- [SAFE]: The skill identifies and reads project configuration files and documentation, including example environment files, to understand project structure without accessing sensitive live credentials.\n
  • Evidence: Found in SKILL.md under the 'Collect data' section 7 ('Системы и конфиги').\n- [SAFE]: All referenced external URLs point to the author's official GitHub repository or well-known services (Google Fonts). These references are documentation-focused and non-malicious.\n
  • Evidence: GitHub URLs found in README.md and references/html-design-spec.md.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 29, 2026, 06:57 PM
Security Audit — agent-trust-hub — product-data-audit