audit-completion

Pass

Audited by Gen Agent Trust Hub on May 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes a bundled shell script (scripts/check-task-status.sh) that utilizes AWK to validate the status taxonomy and integrity of markdown audit tables. It also instructs the agent to run standard development utilities (e.g., git, gh, pytest, npm) to collect evidence and remediate identified gaps.
  • [EXTERNAL_DOWNLOADS]: The INSTALL.md file specifies installation via npx from the author's GitHub repository, which is the standard distribution method for this skill ecosystem.
  • [PROMPT_INJECTION]: Within references/rationalizations.md, a test scenario is provided to train the agent on resisting completion bias. This scenario contains directive language ('IMPORTANT: ... Act.') characteristic of prompt injection; however, it is situated within an educational context designed to reinforce auditing rigor and does not represent an attempt to bypass platform safety guidelines.
Audit Metadata
Risk Level
SAFE
Analyzed
May 17, 2026, 10:40 PM
Security Audit — agent-trust-hub — audit-completion