skills/devinilabs/pro-skill/vantajs/Gen Agent Trust Hub

vantajs

Pass

Audited by Gen Agent Trust Hub on Aug 16, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The SKILL.md file contains instructions to load three.js and vanta.js from well-known CDNs (cdnjs.cloudflare.com and cdn.jsdelivr.net). These are standard industry practices for web development and are considered safe.
  • [COMMAND_EXECUTION]: No shell command execution or dynamic context injection patterns were found in the skill files.
  • [DATA_EXFILTRATION]: No sensitive file access or unauthorized network operations were detected. The scripts in demo/index.html are focused entirely on local Canvas rendering and UI manipulation.
  • [PROMPT_INJECTION]: The demo/PROMPT.md file contains standard instruction-following prompts for recreation and remixing without any attempts to bypass safety filters or override agent behavior.
  • [REMOTE_CODE_EXECUTION]: There is no evidence of remote script execution (e.g., curl|bash) or unsafe dynamic code loading. The references to external scripts are for frontend library integration in a browser context.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 16, 2026, 07:31 AM
Security Audit — agent-trust-hub — vantajs