app-store-screenshots
Pass
Audited by Gen Agent Trust Hub on Jul 14, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill executes shell commands to detect available package managers (bun, pnpm, yarn, npm) and to scaffold a Next.js application. These are standard operations for development tools.
- [EXTERNAL_DOWNLOADS]: It downloads the html-to-image library and project templates via create-next-app from well-known and trusted sources like the NPM registry and Vercel.
- [DATA_EXFILTRATION]: Accesses local branding files to inform design parameters such as colors and typography. This data remains within the local development environment and is not exfiltrated to external third-party domains.
Audit Metadata