install-xzy-skills
Pass
Audited by Gen Agent Trust Hub on May 14, 2026
Risk Level: SAFEREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [REMOTE_CODE_EXECUTION]: The skill uses
npxto execute theskillsCLI tool, which involves downloading and running packages from the npm registry and external GitHub content. - [COMMAND_EXECUTION]: Shell commands are used to perform the installation process and manage symlinks within the
.agents/skills/directory of the current project. - [EXTERNAL_DOWNLOADS]: The skill fetches content and configuration from the author's official repository at
github.com/sanxzy/Skillsduring the installation process.
Audit Metadata