editframe-create

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill uses npm create @editframe to fetch and execute project templates. All identified packages (@editframe/elements, @editframe/cli, @editframe/vite-plugin, @editframe/react, @editframe/nextjs-plugin, @editframe/api) are official resources belonging to the vendor 'editframe'.
  • [COMMAND_EXECUTION]: Instructions guide the agent to execute shell commands like npm start and npx editframe render. These are standard development workflows for the described purpose.
  • [PERSISTENCE]: The skill documents an optional feature to install agent skills globally to ~/.claude/skills or ~/.agents/skills. While this modifies the environment outside the project directory, it is a documented part of the tool's intended functionality for persistent agent capabilities and is triggered via user-facing prompts or explicit flags.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 05:13 PM
Security Audit — agent-trust-hub — editframe-create