capacitor-push-notifications
Pass
Audited by Gen Agent Trust Hub on Mar 26, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill guides users through the installation of legitimate, well-known packages from the npm registry, such as
@capacitor-firebase/messagingandfirebase-admin. - [SAFE]: All external references and downloads target trusted and well-known services including Firebase (Google), Apple Developer Portal, and GStatic.
- [SAFE]: Sensitive data management is handled appropriately. The skill uses placeholders (e.g.,
<YOUR_API_KEY>,<ACCESS_TOKEN>) in code examples and instructs users to download/upload configuration files through official vendor portals. - [SAFE]: No obfuscation, prompt injection, or suspicious persistence mechanisms were identified in the instructions or reference materials.
Audit Metadata