hono
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill utilizes the official
@hono/clitool from the npm registry. Hono is a well-known, high-performance web framework, and the use of its official command-line interface for development is a standard and expected practice. - [COMMAND_EXECUTION]: The skill executes shell commands using the
honoCLI (or vianpx @hono/cli). These commands are scoped to documentation searching (search,docs), local request testing (request), and build optimization (optimize). - [INDIRECT_PROMPT_INJECTION]: The
hono searchandhono docscommands ingest external documentation into the agent's context. This is a primary functionality of the skill intended to help the agent understand Hono APIs. The data source is the official Hono documentation, which is a trusted service for this framework. - [DATA_EXPOSURE_&_EXFILTRATION]: While the skill provides examples of using authentication headers in requests, these are illustrative placeholders (e.g., 'Bearer token') for testing local endpoints. The skill does not access sensitive system files or environment variables for exfiltration.
Audit Metadata