godaddy-nodejs-hosting
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill includes a local utility script,
scripts/validate-paas.mjs, which the agent is instructed to run to verify application compatibility. The script performs safe, local-only file system checks for hardcoded ports, dependency management, and platform contract compliance. - [INDIRECT_PROMPT_INJECTION]: The skill processes user project files like
package.jsonand server source code to identify framework types and configuration errors. This represents a standard ingestion surface for development tools, utilized here for legitimate auditing and scaffolding purposes. - [EXTERNAL_DOWNLOADS]: The skill references standard developer resources, including the public npm registry (registry.npmjs.org) and the vendor's official GitHub repositories (github.com/godaddy/*), to support application installation, documentation, and tooling updates.
Audit Metadata