shark
Pass
Audited by Gen Agent Trust Hub on May 11, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns or security risks were detected. The skill serves its stated purpose of providing documentation, examples, and installation instructions for the Shark UI component registry.
- [COMMAND_EXECUTION]: The skill guides the agent to use standard package runners (
npx,pnpm dlx,bunx) to interface with theshadcnCLI for adding and previewing UI components. These operations are restricted to the intended scope of managing UI library assets. - [EXTERNAL_DOWNLOADS]: Component manifests and source files are downloaded from the project's official domain at
https://shark.vini.one/r/<component>.json. This is the standard delivery mechanism for the registry and aligns with the skill's primary function.
Audit Metadata