migrate-to-shoehorn

Pass

Audited by Gen Agent Trust Hub on Jul 10, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill recommends installing the '@total-typescript/shoehorn' package from the public NPM registry. This is a well-known utility provided by a recognized member of the TypeScript community for improving test quality.
  • [COMMAND_EXECUTION]: The migration workflow suggests running a 'grep' command locally to identify files containing TypeScript 'as' assertions. This is a common discovery pattern and does not involve elevated privileges or network activity.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 10, 2026, 06:43 AM
Security Audit — agent-trust-hub — migrate-to-shoehorn