project-governance

Pass

Audited by Gen Agent Trust Hub on Jun 21, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes the 'Bash' tool to execute various 'oak' CLI commands for project governance tasks, such as 'oak rules detect-existing', 'oak rules sync-agents', and 'oak rfc create'. These operations are consistent with the skill's stated purpose of managing project rules and documentation.
  • [SAFE]: All external references within the documentation point to standard project files (e.g., 'pyproject.toml', 'package.json') or project-specific configuration paths ('oak/constitution.md'). The guidance provided follows industry best practices for context engineering and structured rule-writing for AI agents.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 21, 2026, 11:27 PM
Security Audit — agent-trust-hub — project-governance