shared-monorepo-turborepo
Pass
Audited by Gen Agent Trust Hub on Apr 7, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is purely instructional, focusing on project configuration for Turborepo and monorepos.
- [SAFE]: It handles sensitive environment variables like
TURBO_TOKENusing secure patterns such as GitHub Secrets placeholders (${{ secrets.TURBO_TOKEN }}). - [SAFE]: All external tools and packages mentioned (e.g.,
turbo,syncpack,madge,dpdm) are standard industry utilities for JavaScript/TypeScript development and monorepo management. - [SAFE]: No evidence of prompt injection, obfuscation, data exfiltration, or malicious persistence mechanisms was found across the analyzed files.
Audit Metadata