turborepo

Pass

Audited by Gen Agent Trust Hub on Aug 26, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists entirely of instructional markdown content focused on architectural best practices for JavaScript monorepos. It contains no executable scripts, binaries, or automated shell commands.
  • [DATA_EXPOSURE]: The instructions do not reference sensitive file paths, environment variables, or hardcoded credentials. It follows best practices by advising the use of remote caching through official providers.
  • [REMOTE_CODE_EXECUTION]: No external resources or scripts are downloaded. While it mentions the use of package managers (npm, yarn, pnpm) and the Turborepo CLI, these are standard development tools and are not invoked by the skill itself.
  • [PROMPT_INJECTION]: The instructions are clear and focused on the stated purpose without any attempts to override system prompts or bypass safety guardrails.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 26, 2026, 06:31 AM
Security Audit — agent-trust-hub — turborepo