find-skills
Pass
Audited by Gen Agent Trust Hub on May 18, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to execute npx skills commands to search for, add, and update packages within the environment.
- [EXTERNAL_DOWNLOADS]: The skill facilitates the installation of external code packages using the npx skills add command, which fetches modular packages from GitHub and other sources.
- [REMOTE_CODE_EXECUTION]: The installation process for new skills involves downloading and executing remote code. The skill includes safety mitigation steps, directing the agent to verify install counts and source reputation before proceeding with installation commands.
Audit Metadata