soia-dev-agent-md-advisor

Pass

Audited by Gen Agent Trust Hub on Jul 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill operates as a structural advisor for configuration files. It performs text-based analysis of local files like AGENTS.md and CLAUDE.md without suspicious logic or malicious intent.
  • [DATA_EXFILTRATION]: The instructions explicitly state that the skill does not call external APIs, read account credentials, or access sensitive session data. No network request patterns (curl, wget, fetch) were found.
  • [COMMAND_EXECUTION]: The skill defines its boundaries clearly, stating it does not execute code, run tests, or modify project business logic. It primarily provides diagnostics and text outputs.
  • [EXTERNAL_DOWNLOADS]: Installation instructions refer to the author's own repository 'soia-team/soia-open-dev-coding-skills' via standard platform commands. These are legitimate vendor resources and do not pose a security risk.
  • [PROMPT_INJECTION]: There are no patterns suggesting attempts to override agent behavior, bypass safety filters, or extract system prompts. The instructions focus on structured diagnostic dimensions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 22, 2026, 01:40 PM
Security Audit — agent-trust-hub — soia-dev-agent-md-advisor