dart3-idioms-and-coding-standards

Pass

Audited by Gen Agent Trust Hub on Aug 15, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill includes a utility script scripts/check-dart3-idioms.sh designed to lint Dart source files. The script uses standard Unix utilities (find, grep, sed) to identify specific coding patterns and banned dependencies. It employs safe shell practices, such as validating directory existence and using arrays for file paths to prevent word-splitting issues.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes local Dart source files as input for its linting script. While this represents an ingestion point for untrusted data (source code), the processing is restricted to static regex matching and documentation. It does not execute the files or pass their contents to sensitive system sinks. Ingestion points: Reads files from a user-specified directory (default lib/) in scripts/check-dart3-idioms.sh. Boundary markers: None. Capability inventory: Uses find, grep, sed for read-only operations; no network or write capabilities. Sanitization: Validates that the target directory exists before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 15, 2026, 01:01 PM
Security Audit — agent-trust-hub — dart3-idioms-and-coding-standards