shadcn/ui
Pass
Audited by Gen Agent Trust Hub on Apr 28, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill package is composed exclusively of documentation files in MDX and JSON formats. There are no executable scripts, binaries, or configuration files that trigger code execution on the host or within the agent environment.
- [NO_CODE]: The absence of any code components (scripts, hooks, or automated tasks) eliminates the primary vectors for common security threats like remote code execution or unauthorized data access.
- [SAFE]: All external URLs and project references point to legitimate, well-known resources, including the official project website (ui.shadcn.com), its GitHub repository, and established web development documentation (e.g., Radix UI, Tailwind CSS, TanStack).
- [SAFE]: While documentation examples contain environment variables and connection strings (e.g., DATABASE_URL, REGISTRY_TOKEN), these are consistently presented as placeholders or generic local defaults for instructional purposes and do not represent leaked credentials.
Audit Metadata