tanstack-react-query
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS] (SAFE): The skill references standard, well-known frontend libraries including
@tanstack/react-queryand@saas4dev/core. No unauthorized remote script downloads or piped bash executions were found.- [COMMAND_EXECUTION] (SAFE): The skill consists entirely of documentation and code examples for React applications. There are no executable scripts, shell commands, or subprocess calls that would run on the host system.- [PROMPT_INJECTION] (SAFE): The instructions are strictly technical and focused on React state management. No adversarial patterns, bypass attempts, or instructions to ignore system safety guidelines were detected.- [DATA_EXFILTRATION] (SAFE): All code examples use standard data fetching patterns. No hardcoded credentials, sensitive file path access (e.g., SSH keys or .env files), or unauthorized data transmission logic was identified.- [INDIRECT_PROMPT_INJECTION] (SAFE): While the skill defines an interface to process user-provided API descriptions and code, it acts solely as a documentation provider and does not possess high-risk capabilities like file-writing or network exfiltration that could be exploited via malicious input.
Audit Metadata