happiness-dashboard

Fail

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: HIGHEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCOMMAND_EXECUTION
Full Analysis
  • EXTERNAL_DOWNLOADS (HIGH): The skill clones a template from 'https://github.com/Eng0AI/happiness-dashboard-template.git'. This organization (Eng0AI) is not on the 'Trusted External Sources' list, and the template contents are unverified.
  • REMOTE_CODE_EXECUTION (HIGH): Following the clone, the skill executes 'pnpm install' and 'pnpm run sources'. These commands trigger scripts defined within the untrusted external repository's package.json file, which could lead to arbitrary code execution.
  • COMMAND_EXECUTION (MEDIUM): The skill runs deployment and build commands like 'pnpm run build' and 'vercel build', which execute local code that was derived from an untrusted remote source.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Feb 17, 2026, 06:13 PM