svelte
Pass
Audited by Gen Agent Trust Hub on Apr 26, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses shell commands for project environment detection, including
cat,grep, andlson local configuration files (package.json,svelte.config.js). - [COMMAND_EXECUTION]: Executes development and testing tools via
npxincludingvitest,playwright, andsvelte-check. These are standard operations for a development-focused agent skill. - [DATA_EXPOSURE]: Includes explicit safety rules to prevent security vulnerabilities, specifically forbidding the placement of secrets in client-side files (
+page.ts) and requiring the use of server-side files (+page.server.ts) for sensitive data. - [SAFE]: The skill's primary focus is on enforcing Svelte best practices and project scaffolding. It does not exhibit signs of data exfiltration, obfuscation, or unauthorized remote access.
Audit Metadata