iblai-vibe-scaffold
Pass
Audited by Gen Agent Trust Hub on Aug 25, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides structured Jinja2 templates for scaffolding Next.js App Router projects. It includes configurations for authentication, state management (Redux), and UI components following industry best practices.
- [SAFE]: Environment variable management uses standard template placeholders and .env.example files. No hardcoded credentials or secrets were found in the templates or instruction files.
- [SAFE]: External resources, including MCP server configurations and documentation links, point exclusively to official vendor domains (iblai.app, iblai.com) and trusted repositories.
- [SAFE]: Build scripts for Tauri and mobile platforms use standard automation commands. The use of PowerShell execution policy bypass is correctly scoped to local build processes in the generated project templates.
- [SAFE]: The project recommends using the '--ignore-scripts' flag during installation, which is a recognized security best practice to prevent the execution of untrusted package lifecycle scripts.
Audit Metadata