expo-ui-jetpack-compose

Pass

Audited by Gen Agent Trust Hub on Aug 10, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill specifies standard development commands for the Expo environment, such as npx expo install @expo/ui and npx expo run:android. These are legitimate package management and build commands.
  • [EXTERNAL_DOWNLOADS]: The skill references official documentation from docs.expo.dev and icons from fonts.google.com. Both are recognized as well-known and trusted services, and the references are used for legitimate development purposes.
  • [PROMPT_INJECTION]: The instructions guide the agent to fetch external documentation from docs.expo.dev. This introduces a surface for indirect prompt injection; however, because the source is the official documentation for the framework being used, the risk is considered negligible. Ingestion points: https://docs.expo.dev/versions/v55.0.0/sdk/ui/jetpack-compose/. Boundary markers: None specified. Capability inventory: The agent uses the information to select appropriate UI components and modifiers. Sanitization: Not specified in the skill instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 10, 2026, 09:39 AM
Security Audit — agent-trust-hub — expo-ui-jetpack-compose