use-topbar

Pass

Audited by Gen Agent Trust Hub on Apr 27, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses the Bash tool to execute the shadcn CLI for automated component installation and system configuration.
  • [EXTERNAL_DOWNLOADS]: Configures the application's component registry to fetch definitions and source code from the vendor's infrastructure at https://cognitedata.github.io/aura/r/{name}.json.
  • [REMOTE_CODE_EXECUTION]: Implements the shadcn registry pattern, which involves downloading and executing logic from a remote registry to scaffold and modify local component files.
  • [PROMPT_INJECTION]: Instructions include creating or modifying a .cursor/hooks.json file to establish a persistent session hook that automatically triggers the skill's configuration interview at the start of future development sessions.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 27, 2026, 03:20 AM