spfx
Pass
Audited by Gen Agent Trust Hub on Jul 1, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill uses standard CLI tools (npm, yo, m365, heft, gulp) to perform development tasks such as scaffolding projects, installing dependencies, and building solutions. Commands are appropriately structured for non-interactive agent execution.
- [EXTERNAL_DOWNLOADS]: Fetches development tools and libraries (e.g., @pnp/cli-microsoft365, @microsoft/generator-sharepoint, and PnPjs) from the public NPM registry. These are industry-standard packages from well-known sources in the Microsoft 365 ecosystem.
Audit Metadata