skills/ggglhhh/skills/antfu/Gen Agent Trust Hub

antfu

Pass

Audited by Gen Agent Trust Hub on Mar 11, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns, prompt injections, or unauthorized data access behaviors were detected. The skill follows security best practices for project initialization, such as using the --ignore-scripts flag during dependency installation to prevent execution of untrusted package scripts.\n- [EXTERNAL_DOWNLOADS]: The skill references and installs several external Node.js packages and reusable GitHub Actions workflows to manage project configuration and CI/CD. Specifically, it utilizes @antfu/eslint-config for linting and formatting, and reusable workflows from the sxzz/workflows repository for automated PR fixes and unit testing.\n- [COMMAND_EXECUTION]: Provides instructions for executing various development tools and scripts, including dependency management via @antfu/ni, bundling with tsdown, and publishing with bumpp. It includes a utility script example (alias.ts) that programmatically synchronizes TypeScript path aliases by reading and writing to the local tsconfig.alias.json file.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 11, 2026, 03:15 AM