turbosnap-debug-after-stats

Pass

Audited by Gen Agent Trust Hub on Mar 26, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides templates for standard diagnostic shell commands. It uses rg (ripgrep) for searching configuration files and git for verifying repository state and history. These operations are limited to the local environment for the purpose of identifying configuration mismatches.
  • [EXTERNAL_DOWNLOADS]: The skill references the use of npx to execute official vendor tools, such as @chromatic-com/turbosnap-helper and chromatic trace. These tools are retrieved from the official NPM registry and belong to the verified scope of the skill's authoring organization (Chromatic/ChromaUI).
  • [SAFE]: Comprehensive analysis across all threat categories—including prompt injection, data exfiltration, and obfuscation—found no malicious patterns. The instructions strictly follow legitimate support and debugging workflows for the intended product.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 26, 2026, 04:39 PM
Security Audit — agent-trust-hub — turbosnap-debug-after-stats