velt-activity-best-practices
Pass
Audited by Gen Agent Trust Hub on May 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a documentation and best-practices repository for the Velt Activity Logs system. All external resources, including API endpoints (api.velt.dev) and GitHub repositories (github.com/velt-js/agent-skills), are official vendor resources belonging to the author 'velt-js'.
- [SAFE]: No malicious patterns such as prompt injection, data exfiltration, or persistence mechanisms were detected in the instructions or code examples.
- [SAFE]: Recommended practices for secret management, such as using environment variables for API keys (e.g., process.env.VELT_API_KEY), align with industry safety standards.
- [SAFE]: The skill's instructions on package installation (npm install @veltdev/react) target well-known, official libraries from the developer's organization.
Audit Metadata