javascript-pro
Pass
Audited by Gen Agent Trust Hub on Sep 13, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to execute shell commands such as
eslint --fixfor linting andjestfor running unit tests as part of the validation and testing steps of its core workflow.\n- [COMMAND_EXECUTION]: Thereferences/node-essentials.mdfile provides code examples for using the Node.jschild_processmodule, includingexecandspawn, to interact with the host operating system.\n- [INDIRECT_PROMPT_INJECTION]: The skill processes external data including project requirements,package.jsonconfigurations, and source code files, which serves as an ingestion point for potentially untrusted content that could influence agent behavior.
Audit Metadata