excalidraw

Pass

Audited by Gen Agent Trust Hub on May 6, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches diagram assets and renders SVG content via the Kroki API (kroki.io) and installs the excalidraw-brute-export-cli package from npm.\n- [COMMAND_EXECUTION]: Executes shell commands to install necessary dependencies (Firefox for Playwright) and performs a local modification to the vendor CLI source code to ensure macOS compatibility.\n- [REMOTE_CODE_EXECUTION]: Implements an update check that uses git ls-remote to detect newer versions and provides an option to git pull from the origin repository only after receiving user confirmation.
Audit Metadata
Risk Level
SAFE
Analyzed
May 6, 2026, 08:07 AM