skill-developer
Pass
Audited by Gen Agent Trust Hub on Jul 20, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The documentation includes shell commands designed to test local TypeScript hooks using npx tsx. These commands are standard for development and testing within the Claude Code environment.
- [EXTERNAL_DOWNLOADS]: The guide mentions using npx tsx and npm install for dependency management. These tools interact with the official npm registry to fetch well-known development packages like tsx and typescript.
- [PROMPT_INJECTION]: The skill describes a legitimate platform feature where hooks inject context into the user's prompt to suggest relevant skills. This is an architectural pattern for agent automation and does not contain malicious overrides or bypass attempts.
Audit Metadata