tanstack-query

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides detailed documentation and examples for using TanStack Query in web development. The contents are educational and descriptive.
  • [EXTERNAL_DOWNLOADS]: The skill references the official TanStack Query documentation, GitHub repository, and npm package. All URLs point to established and trusted domains (tanstack.com, github.com, npmjs.com).
  • [COMMAND_EXECUTION]: The scripts/check-updates.py script is a maintenance tool provided for the skill developer to check for updates on the npm registry. It uses standard urllib calls to query the version of @tanstack/react-query. This behavior is limited to the whitelisted domain registry.npmjs.org.
  • [INDIRECT_PROMPT_INJECTION]: As the skill is designed to handle data fetching and state management, it inherently defines patterns for processing external API data. However, it does not include instructions to the agent to execute untrusted code or bypass safety guardrails based on that data.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 10:30 AM
Security Audit — agent-trust-hub — tanstack-query