redpanda-frontend-kit

Pass

Audited by Gen Agent Trust Hub on Jul 25, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill configures project-specific environment variables, such as UI_LIB_DIRS and REDPANDA_KIT, by appending them to the session environment file.
  • [COMMAND_EXECUTION]: Instructs the agent to create symbolic links to external directories, enabling the agent to read and analyze source code from remote repositories.
  • [EXTERNAL_DOWNLOADS]: References the opensrc utility from the vercel-labs GitHub organization, which is a recognized and trusted source.
  • [REMOTE_CODE_EXECUTION]: Uses npx to execute the opensrc package, which is used to download and inspect the source code of project dependencies.
  • [SAFE]: Implements a shell-based linting hook that uses the systemMessage protocol to guide agent behavior. The feedback messages are static strings and do not interpolate untrusted input, preventing injection risks.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 25, 2026, 05:35 PM
Security Audit — agent-trust-hub — redpanda-frontend-kit