skills/whytryharder/skills/agent-ui/Gen Agent Trust Hub

agent-ui

Pass

Audited by Gen Agent Trust Hub on Aug 6, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill utilizes official resources from the inference.sh domain and the @inferencesh/sdk package. No malicious intent or obfuscation was detected.
  • [EXTERNAL_DOWNLOADS]: The documentation instructs the user to download a UI component using the npx shadcn command pointing to https://ui.inference.sh/r/agent.json. This is a standard and transparent method for distributing UI library components.
  • [COMMAND_EXECUTION]: Standard installation commands such as npm install and npx skills add are provided to set up the necessary SDKs and CLI tools required for the component's functionality.
  • [SAFE]: The skill follows security best practices by instructing users to store sensitive credentials like INFERENCE_API_KEY in environment variables (.env.local) rather than hardcoding them into the application source code.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 6, 2026, 05:03 AM
Security Audit — agent-trust-hub — agent-ui