nestjs-expert
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes local shell utilities including grep, find, test, and sed to diagnose the Nest.js project environment. These commands are configured for one-shot project discovery and are typical for specialized development assistants.
- [INDIRECT_PROMPT_INJECTION]: The skill ingests data from project files such as package.json and TypeScript module files to understand application architecture. While this constitutes an attack surface for indirect injection, the skill uses specific patterns for structural identification rather than processing file content as executable instructions.
- [EXTERNAL_DOWNLOADS]: The skill contains references to official documentation and community resources for Nest.js, TypeORM, and Jest. These links point to reputable domains and are intended for user guidance rather than runtime script execution.
Audit Metadata