automotive-embedded-skills

Pass

Audited by Gen Agent Trust Hub on Sep 19, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: The skill consists entirely of instructional markdown files and code examples meant for the AI agent to use as a reference for coding standards and architectural patterns. No active scripts, binary executables, or automated shell commands were found within the skill's file structure.
  • [SAFE]: References to external tools such as compilers (GCC, Clang, GreenHills), build systems, and static analysis tools (Polyspace, Coverity, PC-lint, cppcheck) are provided as best-practice examples for industry-standard workflows. For instance, instructions to install tools via apt-get or run them in CI/CD environments are legitimate technical guidance for the automotive domain.
  • [SAFE]: Communication and networking patterns (CAN, LIN, Automotive Ethernet, SOME/IP, DoIP) are described in detail but exclusively in the context of implementing standardized vehicle protocols. No evidence of data exfiltration, credential harvesting, or unauthorized network activity was detected.
  • [SAFE]: Cybersecurity rules (ISO 21434) included in the skill actively promote secure coding practices, such as the use of hardware security modules (HSM) for key management, implementation of secure boot chains, and mandatory input sanitization from external interfaces.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 19, 2026, 02:02 PM
Security Audit — agent-trust-hub — automotive-embedded-skills