tailrocks-swift-project-setup

Pass

Audited by Gen Agent Trust Hub on Sep 8, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements security best practices by including a dedicated 'Runtime Trust' policy (references/runtime-trust.md). This policy explicitly instructs the agent to treat all repository files, reports, and web content as untrusted data, preventing embedded instructions from overriding governing rules or authority (mitigating Indirect Prompt Injection).
  • [SAFE]: The skill includes explicit instructions for handling credentials, requiring that secrets remain unread and are never copied into outputs, logs, or evidence records.
  • [SAFE]: The toolchain and dependencies defined in the templates (such as SwiftLint, XcodeGen, xcbeautify, and Periphery) are standard, well-known utilities in the Swift development ecosystem.
  • [SAFE]: The skill's operational instructions emphasize safety gates, such as refusing to mutate existing projects unless explicitly authorized and validating the generated baseline through strict local policies before publication.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 8, 2026, 03:11 PM
Security Audit — agent-trust-hub — tailrocks-swift-project-setup