svelte
Pass
Audited by Gen Agent Trust Hub on Jun 19, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists of educational documentation and code examples for the Svelte 5 framework. It explains core concepts such as runes ($state, $derived, $effect), snippets, and the transition system without introducing any executable malicious code.
- [SAFE]: Instructions for using potentially dangerous features like
{@html}(raw HTML injection) correctly include security warnings to escape or sanitize user input to prevent Cross-Site Scripting (XSS) attacks. - [SAFE]: All referenced software packages (Svelte, Vitest, Playwright, etc.) and CLI commands (npx sv create, npm install) are standard tools within the legitimate web development ecosystem.
- [SAFE]: No prompt injection attempts, data exfiltration patterns, or obfuscation techniques were detected in the skill's instructions or metadata.
Audit Metadata