Org Ecosystem

Fail

Audited by Gen Agent Trust Hub on Jul 31, 2026

Risk Level: CRITICAL
Full Analysis
  • [SAFE]: Automated scanner alerts regarding malicious URLs (notes.org, journal.org) are false positives. These strings were identified as domains by the scanner but are actually references to local file paths (e.g., ~/org/notes.org and ~/org/journal.org) within the provided Emacs Lisp configuration examples.
  • [COMMAND_EXECUTION]: The skill contains examples for using org-babel to execute code blocks (Python, Shell, Elisp, etc.). This is the intended core functionality of the Org-mode ecosystem. The documentation includes configurations for managing execution safety, such as the org-confirm-babel-evaluate variable.
  • [SAFE]: All provided code snippets and instructions are standard Emacs Lisp and Org-mode patterns. No evidence of obfuscation, malicious network activity, or credential harvesting was found. The skill correctly identifies side effects in code blocks as an anti-pattern.
Recommendations
  • CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
  • Contains 2 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Jul 31, 2026, 05:21 AM
Security Audit — agent-trust-hub — Org Ecosystem