nx-run-tasks
Pass
Audited by Gen Agent Trust Hub on Oct 2, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill guides the agent to execute shell commands using the
nxCLI tool, as well as package managers likenpx,pnpx, oryarn. These commands (nx run,nx run-many,nx affected) are the primary function of the skill, intended for building, testing, and linting code in a developer's workspace. - [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to read and parse workspace configuration files (
package.json,project.json) and the output ofnx show project. While these are external data sources that could theoretically contain malicious instructions if a workspace is compromised, this data ingestion is necessary for the skill's operation and follows standard development workflows.
Audit Metadata