mac-maintenance

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: Executes shell commands to perform system maintenance, including brew update && brew upgrade for package management and git pull --ff-only for repository synchronization.
  • [COMMAND_EXECUTION]: Invokes osascript to interact with the macOS Finder application to empty the system trash.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data from local Git repositories, creating a potential injection surface.
  • Ingestion points: Output from git status and git pull across all directories in ~/Projects/ is fed back into the agent context in SKILL.md.
  • Boundary markers: Absent; the skill does not use specific delimiters to separate repository output from instructions.
  • Capability inventory: The skill utilizes brew, git, and osascript for shell execution in SKILL.md.
  • Sanitization: Absent; output from external commands is processed directly to generate status counts.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 03:29 PM
Security Audit — agent-trust-hub — mac-maintenance