skills/antfu/skills/vitepress/Gen Agent Trust Hub

vitepress

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • Prompt Injection (SAFE): No instructions attempting to override agent behavior or bypass safety filters were found. Use of terms like 'Important' is limited to technical best practices.
  • Data Exposure & Exfiltration (SAFE): No hardcoded credentials or sensitive file path access detected. Network requests in examples (e.g., fetch) are illustrative and use placeholder domains.
  • Obfuscation (SAFE): No Base64, zero-width characters, or other obfuscation techniques were identified.
  • Unverifiable Dependencies & Remote Code Execution (SAFE): The skill references standard web development packages (sass, less, csv-parse) and CI/CD configurations (GitHub Actions) which are routine for the documented technology.
  • Privilege Escalation (SAFE): No commands like sudo or chmod were found.
  • Persistence Mechanisms (SAFE): No attempts to modify shell profiles or system services were detected.
  • Indirect Prompt Injection (SAFE): While the skill explains how to ingest data from external APIs, it is documented within the context of standard web development practices with built-in framework protections (Vue's template escaping).
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 04:33 PM