migrate-to-rslint

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes project-specific configuration data to drive its migration workflow, which could potentially contain malicious instructions if the source files are untrusted.\n
  • Ingestion points: Reads project configuration files (package.json, eslint.config.*) and editor settings (.vscode/settings.json) to inventory existing linting behavior (documented in references/eslint-flat-config.md).\n
  • Boundary markers: No explicit markers or instructions to ignore embedded commands within the source files are provided.\n
  • Capability inventory: Executes shell commands for package installation (npm, pnpm, yarn, bun) and runs the Rslint CLI tool for validation (rslint .) across references/eslint-flat-config.md.\n
  • Sanitization: There is no evidence of sanitization or validation of the content read from configuration files before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 08:26 PM