kanpeki
Pass
Audited by Gen Agent Trust Hub on Mar 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides documentation and implementation patterns for a UI component library without any malicious behavior.
- [EXTERNAL_DOWNLOADS]: The skill provides instructions for installing well-known dependencies from the official NPM registry, such as react-aria-components and tailwind-merge.
- [COMMAND_EXECUTION]: The skill suggests using the standard npx shadcn CLI to add components to the project, which is a documented and expected practice for shadcn-compatible libraries.
- [PROMPT_INJECTION]: No override, bypass, or administrative mode instructions were detected in the skill content or metadata.
- [DATA_EXFILTRATION]: No commands or code patterns were found that attempt to access sensitive files or transmit data to external servers.
Audit Metadata