nextjs-expert
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references standard development dependencies including
prisma,next-auth,zod,react-hook-form, and@tanstack/react-queryfor installation vianpm. These are well-known community packages. - [COMMAND_EXECUTION]: In
references/EXAMPLES.md, the skill includes standard shell commands for project scaffolding (npx create-next-app), package installation, and local development lifecycle tasks. - [INDIRECT_PROMPT_INJECTION]:
- Ingestion points: The
BlogPostexample inreferences/EXAMPLES.mdfetches content from an external source throughgetPost(params.slug). - Boundary markers: The provided example (in
references/EXAMPLES.md) does not include markers or instructions to isolate the rendered content from the agent's execution context. - Capability inventory: The skill environment defined in
SKILL.mdallows access to tools such asBash,Write, andEdit. - Sanitization: The code example in
references/EXAMPLES.mddemonstrates the use ofdangerouslySetInnerHTMLto renderpost.contentwithout explicit sanitization steps, representing a vulnerability surface for processing untrusted content.
Audit Metadata