kwc-shoelace-react

Pass

Audited by Gen Agent Trust Hub on Apr 24, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is entirely informational and instructional, focusing on providing standard technical guidance for React UI development. No executable code is bundled within the skill.
  • [PROMPT_INJECTION]: The instructions are professional and do not contain patterns intended to override the agent's behavior or safety protocols.
  • [DATA_EXFILTRATION]: No unauthorized access to sensitive file paths or environment variables. External network references are limited to official documentation sites and well-known, trusted CDNs (e.g., Alipay, DiceBear).
  • [REMOTE_CODE_EXECUTION]: The skill does not suggest or perform any remote script downloads, installations from unverified sources, or piping commands into interpreters.
  • [COMMAND_EXECUTION]: There are no instructions for the agent to perform dangerous shell commands. The engineering guidelines specifically prohibit the use of CLI tools like KWC CLI within this skill's scope.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 24, 2026, 05:46 AM