writing-product-specs

Pass

Audited by Gen Agent Trust Hub on Jul 9, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is purely instructional, providing a template and process for generating product documentation. It does not contain any executable scripts, shell commands, or binary files.
  • [SAFE]: No network activity, data exfiltration, or sensitive file access patterns were identified. The instructions focus entirely on user interaction and document formatting.
  • [SAFE]: External links in the README and SKILL files point to the original source on GitHub and the distributor's official website (tomevault.io) for attribution and installation purposes, which are legitimate vendor resources.
  • [SAFE]: The file-writing instruction is restricted to saving documentation artifacts (e.g., spec-feature-date.md), which is consistent with the skill's stated purpose and poses no security risk.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 9, 2026, 01:18 AM
Security Audit — agent-trust-hub — writing-product-specs