firebase-dynamic-ports-setup
Pass
Audited by Gen Agent Trust Hub on Apr 30, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The script
examples/kill-firebase-ports.jsutilizeschild_process.spawnto execute thekill-portutility. The implementation includes robust sanitization by filtering input ports to ensure they are valid numbers before execution, effectively preventing command injection vulnerabilities. - [EXTERNAL_DOWNLOADS]: The skill facilitates the download and execution of the
kill-portpackage from the NPM registry vianpx. This is a standard developer practice for managing local network resources and is used here for its intended purpose of clearing port conflicts. - [SAFE]: The skill promotes secure development habits by instructing users to gitignore sensitive local configuration files (
.env,firebase.local.json) and recommending the use ofdemo-prefixes for Firebase projects to ensure the emulator remains isolated from live production services.
Audit Metadata