skills/felipeangeli/skills/hono/Gen Agent Trust Hub

hono

Pass

Audited by Gen Agent Trust Hub on Aug 26, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill utilizes the official @hono/cli tool from the npm registry. Hono is a well-known, high-performance web framework, and the use of its official command-line interface for development is a standard and expected practice.
  • [COMMAND_EXECUTION]: The skill executes shell commands using the hono CLI (or via npx @hono/cli). These commands are scoped to documentation searching (search, docs), local request testing (request), and build optimization (optimize).
  • [INDIRECT_PROMPT_INJECTION]: The hono search and hono docs commands ingest external documentation into the agent's context. This is a primary functionality of the skill intended to help the agent understand Hono APIs. The data source is the official Hono documentation, which is a trusted service for this framework.
  • [DATA_EXPOSURE_&_EXFILTRATION]: While the skill provides examples of using authentication headers in requests, these are illustrative placeholders (e.g., 'Bearer token') for testing local endpoints. The skill does not access sensitive system files or environment variables for exfiltration.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 26, 2026, 11:03 PM
Security Audit — agent-trust-hub — hono