javascript-pro

Pass

Audited by Gen Agent Trust Hub on Feb 23, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: Analysis of the skill instructions and reference materials confirms they are consistent with the stated purpose of assisting with JavaScript development. No prompt injection or data exfiltration patterns were found.
  • [COMMAND_EXECUTION]: The skill provides documentation on the legitimate use of Node.js child_process APIs (exec, spawn) for system automation and shell command execution.
  • [EXTERNAL_DOWNLOADS]: Documents the use of the fetch API for network operations and ESM module loading from the well-known esm.sh CDN service.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: Provides standard examples for file system access using Node.js fs/promises, which are appropriate for the tool's role as a backend development assistant.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 23, 2026, 09:16 AM