mermaidjs-v11
Pass
Audited by Gen Agent Trust Hub on Mar 29, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a documentation and reference guide for Mermaid.js v11. All content is educational and functional for diagram creation.
- [EXTERNAL_DOWNLOADS]: The documentation provides instructions for installing the official
@mermaid-js/mermaid-clivia npm and pulling official Docker images from the GitHub Container Registry (ghcr.io). These are well-known and reputable sources for this software. - [REMOTE_CODE_EXECUTION]: Examples for web integration use the JSDelivr CDN to load the Mermaid.js library. JSDelivr is a well-known and trusted service for delivering open-source JavaScript assets.
- [COMMAND_EXECUTION]: The skill documents legitimate CLI usage for the
mmdcutility. The provided command patterns are standard for the tool and do not involve unauthorized file access, network exfiltration, or privilege escalation. - [PROMPT_INJECTION]: No malicious instructions, behavioral overrides, or safety bypass attempts were found in the skill metadata or instructional content.
- [DATA_EXFILTRATION]: No sensitive file paths, environment variable access, or unauthorized network requests were detected. The use of CDNs is limited to fetching the library itself.
Audit Metadata