stackblitz-debug-bundle

Pass

Audited by Gen Agent Trust Hub on Sep 10, 2026

Risk Level: SAFE
Full Analysis
  • [DYNAMIC_EXECUTION]: The skill defines functions that utilize wc.spawn to execute Node.js commands within a WebContainer environment. These commands are restricted to hardcoded diagnostic scripts that retrieve version info and memory usage, presenting no risk of arbitrary code execution from untrusted sources.
  • [INDIRECT_PROMPT_INJECTION]: The diagnostic routine processes output from the container's file system and process streams. While these represent external data ingestion, the risk is negligible as the data is used solely for environment reporting and does not influence agent control flow.
  • [EXTERNAL_DOWNLOADS]: Includes references to official documentation and browser support guides from webcontainers.io. These are recognized as legitimate resources from a well-known service provider.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 10, 2026, 09:26 AM
Security Audit — agent-trust-hub — stackblitz-debug-bundle