mermaidjs-v11

Pass

Audited by Gen Agent Trust Hub on Mar 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a documentation and reference guide for Mermaid.js v11. All content is educational and functional for diagram creation.
  • [EXTERNAL_DOWNLOADS]: The documentation provides instructions for installing the official @mermaid-js/mermaid-cli via npm and pulling official Docker images from the GitHub Container Registry (ghcr.io). These are well-known and reputable sources for this software.
  • [REMOTE_CODE_EXECUTION]: Examples for web integration use the JSDelivr CDN to load the Mermaid.js library. JSDelivr is a well-known and trusted service for delivering open-source JavaScript assets.
  • [COMMAND_EXECUTION]: The skill documents legitimate CLI usage for the mmdc utility. The provided command patterns are standard for the tool and do not involve unauthorized file access, network exfiltration, or privilege escalation.
  • [PROMPT_INJECTION]: No malicious instructions, behavioral overrides, or safety bypass attempts were found in the skill metadata or instructional content.
  • [DATA_EXFILTRATION]: No sensitive file paths, environment variable access, or unauthorized network requests were detected. The use of CDNs is limited to fetching the library itself.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 29, 2026, 03:16 AM