setup-audit

Pass

Audited by Gen Agent Trust Hub on Sep 11, 2026

Risk Level: SAFECOMMAND_EXECUTIONDYNAMIC_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes common shell utilities including find, grep, jq, and wc to inspect local environment configuration and project transcripts.
  • [DYNAMIC_EXECUTION]: Step 6.5 contains an embedded Python script that performs directory analysis to identify orphaned memory files. It also references a local linting script at ~/.claude/scripts/harness-lint.py.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes content from potentially untrusted files like CLAUDE.md and session transcripts. Ingestion points: Configuration files and project transcript logs. Boundary markers: None are applied during file analysis. Capability inventory: Local filesystem read access and shell command execution. Sanitization: None; the tool relies on raw text processing for auditing.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 11, 2026, 11:20 PM
Security Audit — agent-trust-hub — setup-audit