librarian
Pass
Audited by Gen Agent Trust Hub on May 13, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the 'pcb' CLI tool for standard PCB design tasks, including searching registries and building component packages. These operations are consistent with the skill's stated purpose and use vendor-specific tooling.
- [EXTERNAL_DOWNLOADS]: Fetches component artifacts and metadata from external web-based databases using 'pcb search -m web:components'. This behavior is limited to the acquisition of technical design artifacts.
- [SAFE]: Potential indirect prompt injection risks from external component data are mitigated by explicit procedural requirements for the agent to verify symbols, footprints, and pins against official manufacturer datasheets.
- [SAFE]: No obfuscated content, hardcoded credentials, persistence mechanisms, or unauthorized privilege escalation patterns were detected.
Audit Metadata