mobile-developer

Pass

Audited by Gen Agent Trust Hub on Jul 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns, obfuscation, or safety bypass attempts were detected. The skill provides legitimate templates and documentation for cross-platform mobile development.
  • [EXTERNAL_DOWNLOADS]: The skill facilitates the installation of official developer CLI tools (e.g., 'eas-cli') and various Expo SDK packages from the NPM registry. These are well-known technology services and are expected dependencies for the skill's stated purpose.
  • [PROMPT_INJECTION]: The skill identifies surfaces for data ingestion from external APIs in its documentation samples. Ingestion points: Data fetched via fetch() in SKILL.md (e.g., api.example.com/posts). Boundary markers: None implemented in the boilerplate code. Capability inventory: No dangerous system capabilities (e.g., shell execution, direct file writes) are connected to the processing of this external data in the provided scripts. Sanitization: Standard boilerplate lacks explicit input sanitization, which is typical for development templates.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 29, 2026, 06:58 PM
Security Audit — agent-trust-hub — mobile-developer