dependency-migrations
Pass
Audited by Gen Agent Trust Hub on Aug 31, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements security best practices by recommending vulnerability audits (e.g.,
pnpm audit) before initiating version bumps, ensuring that the migration starts from a secure baseline. - [SAFE]: Command execution is restricted to standard project toolchain operations (install, test, build, lint) and emphasizes user-driven execution and verification.
- [SAFE]: External references are limited to the author's own GitHub repository and the official NPM registry, both of which are consistent with the skill's identity and stated purpose.
- [SAFE]: The instructions encourage incremental updates and explicit verification gates, reducing the risk of accidental breakage or hidden side effects during the upgrade process.
Audit Metadata