tldr-deep

Pass

Audited by Gen Agent Trust Hub on Jul 30, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes the tldr CLI tool to perform various static analysis operations on local source code, including AST extraction, call graph generation, and control/data flow analysis. These commands are executed locally to provide the agent with a deep understanding of the codebase.
  • [SAFE]: Analysis of the skill instructions and code snippets revealed no signs of credential exfiltration, remote code execution from untrusted sources, or obfuscation. The functionality aligns with the stated purpose of code analysis and debugging.
  • [PROMPT_INJECTION]: While the skill processes code files which could theoretically contain indirect prompt injections (e.g., instructions hidden in comments), this is a standard risk for any code analysis tool and is managed by the underlying agent platform's safety guardrails.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 30, 2026, 10:17 PM
Security Audit — agent-trust-hub — tldr-deep