work-with-design-systems

Warn

Audited by Gen Agent Trust Hub on Jun 25, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONREMOTE_CODE_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill acts as a stub that downloads its full implementation from an external GitHub repository (natdexterra/work-with-design-systems).
  • [COMMAND_EXECUTION]: The instructions direct the agent to use shell tools like 'grep' to inspect the local filesystem and 'npx' for remote skill installation.
  • [REMOTE_CODE_EXECUTION]: The installation command uses the '-y' flag to bypass user confirmation prompts during the installation of remote code from an unverified repository.
  • [COMMAND_EXECUTION]: The skill explicitly instructs the agent to use the '!' command prefix, which enables the execution of shell commands within the environment context.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 25, 2026, 06:34 PM
Security Audit — agent-trust-hub — work-with-design-systems