run-untrusted-code — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited run-untrusted-code (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Use this right before executing code you generated or fetched when running it locally would be risky: shell scripts, scraped snippets, dependency installs, anything with side effects. Pattern: create → run → delete, so nothing touches the host.
box delete when done; per-second billing, a run costs cents.pip install, subprocesses, or Docker actually works.Prefer another tool for: thousands of tiny <500 ms runs (E2B/Modal microVMs).
curl -fsSL https://box.ascii.dev/install | sh, then box login "$BOX_API_KEY" --json.
box_id="$(box new --json | jq -r 'select(.event == "ready") | .id')"
trap 'box delete "$box_id" --json' EXIT # never leak a VM
box ssh "$box_id" -- "mkdir -p /run && cat > /run/main.sh" < ./main.sh
box ssh "$box_id" -- "cd /run && timeout 120 bash main.sh"Always wrap in timeout and delete in a trap/finally.
EU-only; disk-level snapshots; 100 active VMs soft cap.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.