Scanned skills

celigo/ai building-tools

Checked the catalogued skill at building-tools.

SkillTrust corpus scan 17 September 2026 v0.10.0 via skillsh Verify on GitHub
D AI-triaged 1
A Security

A set by no findings on this axis

D Permissions

D; retained sample includes a high finding · SD-003 · what this rule accepts as a false positive →

A Transparency

A set by no findings on this axis

1 finding
permission_hygienehigh SD-003
references/schemas/response.yml
9 suppressed by AI triage
permission_hygienehigh SD-003 benign_example
SKILL.md

The link uses a relative path in a documentation file, not code that can be executed.

permission_hygienehigh SD-003 benign_example
SKILL.md

Documentation reference, harmless.

permission_hygienehigh SD-003 benign_example
SKILL.md

Relative link in markdown, safe.

permission_hygienehigh SD-003 benign_example
SKILL.md

Link to another skill doc, no code execution.

permission_hygienehigh SD-003 benign_example
SKILL.md

Documentation path, benign.

permission_hygienehigh SD-003 benign_example
SKILL.md

Markdown link, not executable.

permission_hygienehigh SD-003 benign_example
SKILL.md

Relative link in documentation, no threat.

permission_hygienehigh SD-003 benign_example
references/schemas/input.yml

The $ref uses a relative path to another internal schema file, which is a normal, non-exploitable operation.

permission_hygienehigh SD-003 benign_example
references/schemas/output.yml

Relative YAML $ref usage is standard and not a security threat.