skills/johnsonmao/skills/turborepo/Gen Agent Trust Hub

turborepo

Pass

Audited by Gen Agent Trust Hub on Feb 16, 2026

Risk Level: LOW
Full Analysis
  • PROMPT_INJECTION (SAFE): No behavior-overriding instructions, safety bypasses, or system prompt extraction attempts were found. The skill instructions are focused solely on monorepo task management and follow structural guardrails.\n- REMOTE_CODE_EXECUTION (SAFE): No unauthorized remote code execution or suspicious script downloads were identified. References to external packages (e.g., turbo-ignore, syncpack) and GitHub Actions in the documentation are standard development practices for this domain.\n- DATA_EXFILTRATION (SAFE): The skill does not include commands that access sensitive user data or communicate with non-whitelisted domains. Secret management instructions (e.g., TURBO_TOKEN) correctly advise using CI/CD secret providers.
Audit Metadata
Risk Level
LOW
Analyzed
Feb 16, 2026, 01:10 PM