vue-expert

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides legitimate technical documentation and code templates for Vue 3 development. All identified patterns, such as environment variable usage (SENTRY_AUTH_TOKEN, API_SECRET) and shell command execution (vue-tsc, vitest), are standard for professional software development workflows.
  • [INDIRECT_PROMPT_INJECTION]: The skill possesses a standard indirect prompt injection surface inherent to code generation and validation assistants. It processes user requirements to implement components and then executes validation tools on the resulting code.
  • Ingestion points: User-provided application requirements and component specifications (SKILL.md).
  • Boundary markers: None present in the instructions to delimit user-provided data or warn the model against instructions embedded within those requirements.
  • Capability inventory: The core workflow involves writing files and executing shell commands for type-checking (vue-tsc) and testing (vitest) (SKILL.md).
  • Sanitization: No input validation or sanitization of user-provided requirements is performed before they influence the agent's logic.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 09:18 PM
Security Audit — agent-trust-hub — vue-expert