nuxt
Pass
Audited by Gen Agent Trust Hub on Aug 27, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides a template for a custom Vite plugin (
tailwind-reference-plugin.js) intended to be integrated into the project's build process. While this involves build-time execution, it is standard for developer-focused skills providing project configuration templates. - [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and analyze local project files (Vue components, Nuxt configuration) to provide context-aware development assistance. This represents a standard surface for indirect prompt injection, common to all code-analysis tools.
- [SAFE_VENDOR_RESOURCE]: References the author's own configuration package
eslint-config-kswedberg, which is consistent with the skill's metadata and author context.
Audit Metadata