osv
Pass
Audited by Gen Agent Trust Hub on Apr 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security threats detected. The skill provides legitimate functionality for security auditing and vulnerability research.
- [COMMAND_EXECUTION]: The skill uses the
x osvcommand to perform vulnerability scans and query the OSV database. This command execution is localized to the tool's stated purpose and originates from the vendor's own CLI ecosystem. - [DATA_EXFILTRATION]: No unauthorized data access or exfiltration patterns identified. The tool interacts with the public OSV project for vulnerability information.
- [PROMPT_INJECTION]: No attempts to override agent behavior, bypass safety filters, or extract system prompts were found in the instructions or examples.
Audit Metadata