shadcn-ui

Pass

Audited by Gen Agent Trust Hub on Feb 26, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references the use of npx shadcn@latest, which fetches components and initialization logic from the official shadcn/ui registry. This is a well-known service and the industry-standard method for using this framework.
  • [COMMAND_EXECUTION]: Provides instructions for framework initialization and component management using the shadcn CLI and standard package managers (npm, pnpm). These commands are essential for the skill's primary purpose.
  • [SAFE]: Analysis of the documentation and code samples reveals no evidence of prompt injection, data exfiltration, obfuscation, or other threat vectors. All instructions are consistent with established best practices for modern web development.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 26, 2026, 12:26 AM