react-hook-form-zod

Pass

Audited by Gen Agent Trust Hub on Feb 20, 2026

Risk Level: SAFE
Full Analysis
  • [Command Execution] (SAFE): The file scripts/check-versions.sh uses npm view to check for the latest package versions. These are standard development utility commands and pose no risk to the host environment.
  • [Data Exposure] (SAFE): While the templates include fields for passwords and personal data, they follow best practices for secure handling, such as using POST requests and encouraging server-side validation. No hardcoded credentials or exfiltration patterns were found.
  • [Metadata] (SAFE): The skill references future-dated version numbers (e.g., Zod v4 and RHF v7.66) and update timestamps (November 2025). These appear to be placeholders or forward-looking templates for experimental library versions and do not represent a security threat.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 20, 2026, 04:31 PM