uploadthing

Pass

Audited by Gen Agent Trust Hub on Jul 24, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install standard, well-known packages (uploadthing, @uploadthing/react) from the official NPM registry to enable file upload functionality.
  • [COMMAND_EXECUTION]: Includes standard shell commands for package installation (npm install) which are benign and appropriate for the skill's stated purpose.
  • [DATA_EXFILTRATION]: No evidence of unauthorized data access or sensitive file reading. The code examples demonstrate secure handling of user sessions and file metadata within a developer-controlled database.
  • [PROMPT_INJECTION]: The instructions are purely technical and do not contain any patterns intended to bypass agent constraints or override system prompts.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 24, 2026, 08:59 PM
Security Audit — agent-trust-hub — uploadthing