affirmations

Pass

Audited by Gen Agent Trust Hub on Sep 2, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill documentation includes a command npx skills add inference-sh/skills@prompt-engineering under the 'Related Skills' section. This points to an external third-party source to fetch additional skill components.
  • [REMOTE_CODE_EXECUTION]: The provided npx command executes code from the skills package on the npm registry, which is configured to fetch and potentially run logic from a remote repository at inference-sh/skills. Although this is in a documentation section, it represents a path for remote code to be introduced into the environment.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 2, 2026, 02:18 PM
Security Audit — agent-trust-hub — affirmations