developer-hub-app-architect
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill acts as a technical architect for the Contentstack ecosystem, providing implementation guidance and code generation aligned with official platform standards.
- [SAFE]: It incorporates strict security defaults, explicitly mandating that OAuth client secrets and signing keys must never be exposed and that credentials must remain server-side.
- [EXTERNAL_DOWNLOADS]: The skill references the official Contentstack Marketplace App Boilerplate repository. As this is a trusted vendor resource provided by the skill's author, it is considered safe for developer use.
- [COMMAND_EXECUTION]: Includes instructions for standard local development commands such as npm install and npm run dev, which are expected for the skill's developer-focused workflows.
- [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied app ideas and error logs to generate code and architecture plans. Ingestion points: Feature descriptions, manifest details, and error messages provided in user requests. Boundary markers: None explicitly defined in the instructions. Capability inventory: Generation of React/TypeScript code and manifest configurations. Sanitization: The skill includes mandatory safety instructions to prevent the inclusion of secrets in generated code or configuration outputs.
Audit Metadata