vercel-skill-cli-expert
Pass
Audited by Gen Agent Trust Hub on Mar 29, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as an operational guide for the
npx skillsCLI utility. All instructions and references are focused on legitimate user tasks related to skill management and documentation.\n- [COMMAND_EXECUTION]: The documentation provides instructions for executing thenpx skillstool to perform management tasks such as listing installed skills, checking for updates, and initializing new projects. These commands are standard for the tool's intended use and do not involve unauthorized system modifications or privilege escalation.\n- [EXTERNAL_DOWNLOADS]: The skill describes the use of theskills addcommand, which retrieves content from external Git repositories (e.g., GitHub, GitLab). This is the primary function of the documented management tool and is presented in a neutral, informational context.\n- [PROMPT_INJECTION]: The documented tool facilitates an indirect prompt injection surface as it installs and manages instruction sets (SKILL.mdfiles) from third-party repositories that the agent eventually loads. 1. Ingestion points: External Git repositories specified by the user viaskills add(as described inreferences/commands.md). 2. Boundary markers: The documentation does not specify boundary markers or delimiters for imported content. 3. Capability inventory: The tool installs instructional files into agent-specific directories for runtime execution. 4. Sanitization: No content sanitization or validation processes are described in the provided technical guides.
Audit Metadata