heroui-native

Pass

Audited by Gen Agent Trust Hub on Apr 1, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill includes scripts that retrieve documentation from official HeroUI domains 'native-mcp-api.heroui.com' and 'v3.heroui.com'. These are well-known resources for the UI library.
  • [COMMAND_EXECUTION]: Defines helper scripts ('get_component_docs.mjs', 'get_docs.mjs', 'get_theme.mjs', 'list_components.mjs') meant to be run by the agent to obtain library documentation. These scripts do not execute arbitrary commands or access sensitive files.
  • [DATA_EXFILTRATION]: Network requests include basic analytics parameters ('app=native-skills') and a custom 'User-Agent'. No sensitive credentials or local data is accessed or transmitted.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 1, 2026, 04:54 PM
Security Audit — agent-trust-hub — heroui-native