structural-review

Pass

Audited by Gen Agent Trust Hub on Aug 14, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [NO_CODE]: The skill consists exclusively of markdown instructions (SKILL.md) and a project manifest (plugin.json). There are no Python scripts, Node.js files, shell scripts, or binaries included that could be executed by the agent.
  • [SAFE]: The skill is defined as a "report-only" tool, meaning it generates text findings rather than interacting with the file system or external APIs. No patterns of prompt injection, data exfiltration, or obfuscation were identified.
  • [SAFE]: All metadata and URLs (shipshit.dev) are consistent with the identified author and represent legitimate vendor resources. There are no attempts to download external payloads or access sensitive system credentials.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 14, 2026, 07:08 PM
Security Audit — agent-trust-hub — structural-review