node-js

Pass

Audited by Gen Agent Trust Hub on Mar 21, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to use the rg (ripgrep) utility to search through its own reference documentation (references/node.js.md) for specific topics like architecture, testing, and security. This is a legitimate use of local search tools to improve response relevance.
  • [COMMAND_EXECUTION]: The instructions include standard Node.js development and validation commands such as npm audit, npm run lint, and node --check. These are used appropriately within the context of software development workflows.
  • [EXTERNAL_DOWNLOADS]: The skill references several well-known and trusted technology ecosystems and tools (e.g., npm, Yarn, pnpm, Nx, Turborepo, Jest, Playwright, OpenTelemetry). These references are part of standard industry recommendations and do not involve suspicious or unverified sources.
  • [PROMPT_INJECTION]: No attempts to override agent behavior, bypass safety guidelines, or extract system prompts were detected. The instructions focus purely on providing technical guidance for Node.js projects.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 21, 2026, 07:18 AM
Security Audit — agent-trust-hub — node-js