weapp-tailwindcss-migrate
Pass
Audited by Gen Agent Trust Hub on Aug 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a legitimate development tool for the weapp-tailwindcss ecosystem, authored by the project maintainer. Its primary function is to facilitate the migration of project configurations and the removal of deprecated setup steps without introducing external dependencies or risky command executions.- [INDIRECT_PROMPT_INJECTION]: The skill identifies a standard attack surface by processing local project files which could theoretically contain malicious instructions.
- Ingestion points: The skill reads local
manifest, lock files, Tailwind CSS entries, and bundler configurations (Vite, Webpack, Rspack). - Boundary markers: Absent; there are no specific instructions to the agent to distinguish between configuration data and potential natural language instructions embedded within these files.
- Capability inventory: The agent's capabilities are limited to reading local configuration files and generating file diffs for migration purposes. It does not perform network operations or persistent system changes.
- Sanitization: None detected; the skill relies on the structure of configuration files to identify versions and settings without explicit filtering of prose content.
Audit Metadata