migrate-to-shoehorn

Pass

Audited by Gen Agent Trust Hub on Aug 18, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references the installation of @total-typescript/shoehorn via npm. This is a standard practice for adding development dependencies in Node.js projects and targets a well-known library in the TypeScript ecosystem.
  • [COMMAND_EXECUTION]: The workflow suggests using grep to identify files containing specific TypeScript type assertion patterns. This is a local read-only search operation commonly used by developers to audit or modify source code.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 18, 2026, 10:27 AM
Security Audit — agent-trust-hub — migrate-to-shoehorn