svelte-kit
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [NO_CODE]: The skill is a collection of documentation files and reference materials. It does not contain any executable scripts or binary files that run during the skill's operation.\n- [EXTERNAL_DOWNLOADS]: The documentation includes standard instructions for installing official SvelteKit packages, deployment adapters, and reputable third-party utilities (e.g., OpenTelemetry, Lucia Auth, Tailwind CSS) from established registries like npm. These represent safe, well-known ecosystem dependencies.\n- [SAFE]: Code examples provided in the references adhere to framework best practices, emphasizing secure patterns such as server-side input validation via schemas (Zod/Valibot), proper CSRF protection, and secure cookie management for authentication.
Audit Metadata