docs-js
Fail
Audited by Gen Agent Trust Hub on May 18, 2026
Risk Level: CRITICAL
Full Analysis
- [SAFE]: The skill consists entirely of Markdown documentation and does not include any executable scripts or autonomous runtime logic that could perform unauthorized actions.
- [EXTERNAL_DOWNLOADS]: The documentation contains links to download official vendor assets from
https://cdn.img.lyand references repositories athttps://github.com/imgly. These are verified vendor-controlled domains. - [SAFE]: Automated scanners flagged
your-proxy-server.comas a phishing threat. This domain is used as a generic placeholder in the 'AI Integration' and 'Proxy Server' guides to demonstrate how users should configure their own backend infrastructure. It does not represent a real malicious destination in this context. - [SAFE]: The AV scanner flagged several Markdown files with the signature
MD:HttpRequest-inf. This is a heuristic detection triggered by example code blocks showing how to use thefetchAPI for file uploads or AI provider communication. These are legitimate instructional code examples for the SDK.
Recommendations
- CRITICAL: 10 infected file(s) detected - DO NOT USE
- Contains 10 malicious URL(s) - DO NOT USE
Audit Metadata