scorecard
Pass
Audited by Gen Agent Trust Hub on Apr 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements security auditing functionality using legitimate vendor-provided tools (x-cmd). No suspicious patterns such as prompt injection, data exfiltration, or unauthorized command execution were detected.
- [COMMAND_EXECUTION]: The skill uses the 'x-cmd' CLI tool to retrieve information from GitHub. These commands are localized to the specific purpose of security auditing and do not involve arbitrary user input execution.
- [SAFE]: Data processing is limited to fetching security metadata from public repositories on GitHub, which is a well-known and trusted service. No sensitive local data access or exfiltration patterns are present.
Audit Metadata