skills/ericrisco/rsc-harness/vue-nuxt/Gen Agent Trust Hub

vue-nuxt

Pass

Audited by Gen Agent Trust Hub on Aug 6, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides robust guidance on secure coding practices, specifically instructing the agent to keep sensitive information (API keys, database URLs) in the server-only runtimeConfig and warning against their exposure in public bundles.
  • [SAFE]: Technical instructions address common server-side rendering (SSR) security risks, such as data leaking between requests via module-level singletons, and prescribe the use of hydration-safe state management tools like useState or Pinia stores.
  • [COMMAND_EXECUTION]: The included validation script (scripts/verify.sh) executes standard project tools such as nuxi, vue-tsc, vitest, and vite to ensure code quality. The script is designed for safety, using npx --no-install to prevent unauthorized remote package downloads and focusing on read-only checks or local build outputs.
  • [SAFE]: No malicious patterns such as prompt injection, obfuscation, or unauthorized network operations were detected. The skill maintains a clear focus on its stated purpose of assisting with Vue and Nuxt development.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 6, 2026, 09:37 PM
Security Audit — agent-trust-hub — vue-nuxt