monorepo-management
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues detected. The skill instructions and resources focus exclusively on legitimate monorepo management tasks, including dependency handling, build optimization, and CI/CD setup.
- [COMMAND_EXECUTION]: The skill provides standard boilerplate commands for monorepo tools (e.g.,
npx create-turbo,pnpm install,nx build). These are expected for the skill's stated purpose and use well-known, legitimate software. - [EXTERNAL_DOWNLOADS]: References to external repositories and actions (such as GitHub Actions from the 'actions' and 'pnpm' organizations) target well-known, trusted services.
- [DATA_EXFILTRATION]: No suspicious network activity or sensitive data access was identified. The use of environment variables like
GITHUB_TOKENandNPM_TOKENin CI/CD templates follows standard security practices for secret management.
Audit Metadata