performance-audit

Pass

Audited by Gen Agent Trust Hub on Apr 2, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill employs standard Unix utilities such as rg (ripgrep), cat, and ls to analyze project-specific configuration files including package.json, next.config.js, and vercel.json. These operations are used exclusively for read-only inspection of the codebase to identify performance patterns and existing optimizations.\n- [EXTERNAL_DOWNLOADS]: The skill references the use of well-known performance analysis tools via npx, specifically vite-bundle-analyzer, webpack-bundle-analyzer, and bundlephobia. These are established utilities in the web development ecosystem for evaluating bundle sizes and package impact.\n- [DATA_EXPOSURE]: The skill instructs the agent to read project configuration and source code files to assess performance metrics. This access is limited to project metadata and does not target sensitive system directories or credentials.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 2, 2026, 06:13 PM
Security Audit — agent-trust-hub — performance-audit