portaljs-add-map

Pass

Audited by Gen Agent Trust Hub on Aug 24, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches and installs standard library dependencies (react-leaflet, leaflet) via npm to provide map rendering capabilities.
  • [COMMAND_EXECUTION]: Executes package management commands (npm install) and TypeScript validation (npx tsc) to set up the environment and verify code integrity.
  • [EXTERNAL_DOWNLOADS]: Retrieves operational instructions from a remote markdown file hosted on the author's official GitHub repository (github.com/datopian/portaljs), which serves as the source of truth for the workflow.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process GeoJSON data from local files or remote URLs, which represents an attack surface for indirect prompt injection if the data contains malicious strings; however, the impact is limited by the skill's specific focus on geographic data visualization.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 24, 2026, 04:57 AM