007
Pass
Audited by Gen Agent Trust Hub on Apr 17, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: Benign prompt injection examples detected in
references/ai-agent-security.mdandreferences/owasp-checklists.mdare educational reference data for the agent to use during security audits. They are not instructions to subvert the agent's behavior. - [COMMAND_EXECUTION]: The skill provides pre-configured commands to run its internal security auditing scripts. No arbitrary command execution from untrusted sources or unsafe argument interpolation was detected.
- [EXTERNAL_DOWNLOADS]: As stated in the
scripts/requirements.txtand verified in the source code, the toolset uses zero external dependencies, relying exclusively on the Python standard library to eliminate supply chain risks. - [DATA_EXFILTRATION]: All data processing and report generation are strictly local. No network operations or exfiltration patterns were identified in the script implementations.
Audit Metadata