dos-verify-done-claims
Pass
Audited by Gen Agent Trust Hub on Aug 13, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill requires the installation of the
dos-kernelpackage from the Python Package Index (PyPI). This external dependency is the primary tool for the skill's functionality and traces back to the documented author and source repository. - [COMMAND_EXECUTION]: The skill instructs the agent to execute shell commands to manage a Python virtual environment, install the
dos-kernellibrary, and run thedosCLI for repository auditing. It also usesjqfor processing structured tool output. - [DATA_INDIRECT_PROMPT_INJECTION]: As a tool that processes git history and commit diffs, the skill ingests data from external sources. The use of a deterministic CLI tool for verification and structured JSON for communication provides clear boundary markers and reduces the surface for indirect influence compared to direct LLM processing of untrusted content.
Audit Metadata