react-best-practices

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists entirely of instructional guidance for writing clean and performant React code. No malicious patterns, command injections, or exfiltration attempts were detected.
  • [EXTERNAL_DOWNLOADS]: The skill mentions and attributes content to Vercel Labs' official GitHub repository. References to this well-known service are documented neutrally and do not represent a security risk.
  • [COMMAND_EXECUTION]: The instructions explicitly direct the agent to use only the project's existing linting, typechecking, and build tools, and strictly forbid the installation of new or unauthorized tooling, which follows security best practices for agent autonomy.
  • [DATA_EXPOSURE]: The skill references local documentation paths (e.g., within node_modules) to ensure the agent uses version-accurate APIs. This is a standard development workflow and does not involve access to sensitive user credentials or private keys.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 05:42 PM
Security Audit — agent-trust-hub — react-best-practices