migrate-to-shoehorn
Pass
Audited by Gen Agent Trust Hub on Aug 18, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references the installation of
@total-typescript/shoehornvianpm. This is a standard practice for adding development dependencies in Node.js projects and targets a well-known library in the TypeScript ecosystem. - [COMMAND_EXECUTION]: The workflow suggests using
grepto identify files containing specific TypeScript type assertion patterns. This is a local read-only search operation commonly used by developers to audit or modify source code.
Audit Metadata