parse-package-json
Pass
Audited by Gen Agent Trust Hub on Jul 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is purpose-built for parsing local package.json files and does not exhibit any malicious patterns.
- [SAFE]: Tool access is strictly limited to the Read tool, which prevents unintended network access or command execution.
- [SAFE]: No signs of obfuscation, prompt injection, or data exfiltration were found in the instructions or supporting files.
- [SAFE]: Input validation is performed using a dedicated JSON schema, which is a defensive measure against malformed or malicious data structures.
Audit Metadata