audit-activation
Pass
Audited by Gen Agent Trust Hub on Aug 4, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill invokes a local script
scripts/run-activation-audit.shto perform its primary function. This script uses Node.js and standard shell commands likegrepto analyze local project data.\n- [DATA_EXPOSURE_SAFE]: The skill accesses project-specific files, including telemetry logs at.claude/logs/subagent-spawns.jsonland source code insrc/agents/andsrc/skills/. This access is restricted to the local environment and is required for reporting.\n- [INDIRECT_PROMPT_INJECTION]: While the skill processes external log data, it does so using safe string matching and local file inventory validation, effectively preventing untrusted data from influencing agent behavior.
Audit Metadata