vue-data-ui-skilld

Fail

Audited by Gen Agent Trust Hub on Apr 13, 2026

Risk Level: CRITICAL
Full Analysis
  • [SAFE]: The skill serves as a documentation reference and instruction set for the vue-data-ui Vue 3 component library. All content is consistent with its stated purpose of assisting in data visualization and storytelling.
  • [SAFE]: Automated scan alerts regarding a malicious URL blacklist hit were analyzed. The flagged string 2Fgithub.com is a standard URL-encoded component of GitHub's internal telemetry (Hydro) and redirection parameters (e.g., return_to parameters). This is a common false positive and does not represent a security threat.
  • [SAFE]: The file references/docs/graphieros/vue-data-ui/blob/master/README.md contains raw HTML boilerplate scraped from the GitHub web interface. While the inclusion of full HTML in a .md file is unusual, technical analysis of the content shows it to be standard GitHub site code with no embedded malicious scripts, hidden redirects, or exfiltration logic.
  • [SAFE]: Code snippets within the reference files (such as discussion-125.md) demonstrate standard patterns for data fetching using axios and PDF generation using jspdf. These are legitimate examples provided for developer guidance.
  • [SAFE]: The skill author harlan-zw and the vendor graphieros are treated as legitimate entities associated with the library's development. All external resources and package references trace back to official GitHub or NPM infrastructure for the project.
Recommendations
  • Contains 1 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Apr 13, 2026, 08:31 AM