npm-release

Pass

Audited by Gen Agent Trust Hub on Jul 14, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill performs shell operations using npm, git, node, sed, and rg to manage versioning, verify build artifacts, and interact with the npm registry. These commands are necessary for the skill's primary purpose.
  • [COMMAND_EXECUTION]: Utilizes the script command to simulate a TTY environment. This is used as a workaround to capture and display npm's browser-based authentication URL, which is otherwise redacted in non-interactive environments, enabling a safe user-interactive authentication flow.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 14, 2026, 02:25 PM
Security Audit — agent-trust-hub — npm-release