angular-migration
Pass
Audited by Gen Agent Trust Hub on Jun 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides standard architectural guidance and code snippets for framework migration. The provided TypeScript and JavaScript examples follow industry best practices for the ngUpgrade migration path and do not contain malicious payloads.
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to analyze existing AngularJS codebases. This represents a potential attack surface where instructions embedded in a project's source code could attempt to influence agent behavior. However, the skill does not implement any automated execution or parsing logic that would bypass standard model guardrails, and the risk is considered negligible given the context of code migration.
- [COMMAND_EXECUTION]: The skill mentions external resources such as an analysis script (
scripts/analyze-angular-app.sh), but this script is presented as a local tool for application assessment and is consistent with the skill's stated purpose. No unauthorized or silent command execution patterns were found.
Audit Metadata