forge-ui

Pass

Audited by Gen Agent Trust Hub on Aug 6, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to execute a Node.js script located at ../../../.fullstack-forge/runtime/cli/src/composition-entry.js. This command is used to resolve the runtime configuration and identify which specialist guidance to load based on the repository state.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: The skill reads from a local configuration file .forge/composition.json to determine the execution paths. This is a standard mechanism for configuration-driven tools to manage their internal logic and does not involve exfiltrating sensitive data to external sources.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 6, 2026, 06:48 PM
Security Audit — agent-trust-hub — forge-ui