canvas-component-push
Pass
Audited by Gen Agent Trust Hub on Sep 28, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides legitimate operational instructions for developers using the Drupal Canvas CLI tool.
- [SAFE]: The instructions for checking authentication sources like
.env,~/.canvasrc, and~/.config/drupal-canvas/oauth.jsonare standard procedures for verifying development environment configuration and do not involve unauthorized exfiltration. - [SAFE]: References to external repositories and package registries (git.drupalcode.org and npmjs.com) are directed towards official, well-known platforms for the specified software.
- [SAFE]: Command execution is limited to standard usage of the
@drupal-canvas/clitool (npx canvas push,npx canvas reconcile-media, etc.) following user-initiated requests.
Audit Metadata