skills/halt-catch-fire/skills/chat-ui/Gen Agent Trust Hub

chat-ui

Pass

Audited by Gen Agent Trust Hub on Jun 19, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill fetches component registry data from https://ui.inference.sh/r/chat.json using the shadcn utility. This is a common and expected distribution method for modern frontend UI libraries.
  • [EXTERNAL_DOWNLOADS]: The documentation includes instructions to download and install additional tools and skills from the belt-sh and inference-sh namespaces.
  • [COMMAND_EXECUTION]: The skill provides various shell commands for setup and installation, such as npx shadcn@latest add and npx skills add. These are standard development commands used for managing project dependencies.
  • [SAFE]: The provided React component examples and overall structure follow best practices for UI development. No malicious patterns such as data exfiltration, obfuscation, or privilege escalation were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 19, 2026, 02:15 AM
Security Audit — agent-trust-hub — chat-ui