canvas-component-push

Pass

Audited by Gen Agent Trust Hub on Sep 28, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides legitimate operational instructions for developers using the Drupal Canvas CLI tool.
  • [SAFE]: The instructions for checking authentication sources like .env, ~/.canvasrc, and ~/.config/drupal-canvas/oauth.json are standard procedures for verifying development environment configuration and do not involve unauthorized exfiltration.
  • [SAFE]: References to external repositories and package registries (git.drupalcode.org and npmjs.com) are directed towards official, well-known platforms for the specified software.
  • [SAFE]: Command execution is limited to standard usage of the @drupal-canvas/cli tool (npx canvas push, npx canvas reconcile-media, etc.) following user-initiated requests.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 28, 2026, 12:48 PM
Security Audit — agent-trust-hub — canvas-component-push