stackblitz-debug-bundle
Pass
Audited by Gen Agent Trust Hub on Sep 10, 2026
Risk Level: SAFE
Full Analysis
- [DYNAMIC_EXECUTION]: The skill defines functions that utilize
wc.spawnto execute Node.js commands within a WebContainer environment. These commands are restricted to hardcoded diagnostic scripts that retrieve version info and memory usage, presenting no risk of arbitrary code execution from untrusted sources. - [INDIRECT_PROMPT_INJECTION]: The diagnostic routine processes output from the container's file system and process streams. While these represent external data ingestion, the risk is negligible as the data is used solely for environment reporting and does not influence agent control flow.
- [EXTERNAL_DOWNLOADS]: Includes references to official documentation and browser support guides from
webcontainers.io. These are recognized as legitimate resources from a well-known service provider.
Audit Metadata