not-a-vibe-coder
Pass
Audited by Gen Agent Trust Hub on Jul 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues were identified during the analysis of this skill. The skill strictly provides a framework for project initialization and documentation management without requesting access to external resources or sensitive local data.
- [PROMPT_INJECTION]: The skill uses instructional language to define a hierarchy of authority (user input vs. generated files) within its own workflow, which does not attempt to bypass the AI agent's core safety guardrails.
- [DATA_EXFILTRATION]: No network operations or commands for data transmission were found. The skill operates entirely within the local context of project file generation.
- [CREDENTIALS_UNSAFE]: No hardcoded secrets, API keys, or access to sensitive credential stores were detected.
- [COMMAND_EXECUTION]: The skill does not perform any shell command execution or subprocess spawning.
Audit Metadata