skills/mastra-ai/skills/mastra/Gen Agent Trust Hub

mastra

Pass

Audited by Gen Agent Trust Hub on May 30, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides documentation and developer tools for the Mastra framework. All scripts and instructions are consistent with its stated purpose of assisting with AI agent and workflow development.
  • [EXTERNAL_DOWNLOADS]: The skill correctly directs users to official vendor documentation at https://mastra.ai/llms.txt and utilizes standard package registries (NPM) for project dependencies. These resources are from a recognized and trusted source (mastra-ai).
  • [COMMAND_EXECUTION]: Instructs the agent on using standard CLI tools (npm, npx, node, curl) for project initialization and resource inspection. These commands are typical for the developer workflow and are limited to the user's project environment.
  • [DATA_EXFILTRATION]: The skill identifies the importance of environment variables for API keys and database credentials but properly guides users to manage them via local .env files, ensuring secrets are handled according to security best practices without external exposure.
Audit Metadata
Risk Level
SAFE
Analyzed
May 30, 2026, 04:46 AM
Security Audit — agent-trust-hub — mastra