mj-adapt
Pass
Audited by Gen Agent Trust Hub on May 7, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill executes local Node.js scripts (
generate-images.jsandgenerate-xhs-slides.js) that launch a headless Chromium browser using Puppeteer. This is utilized to render HTML templates and capture screenshots for social media images, which is the core functionality of the tool. - [EXTERNAL_DOWNLOADS]: The templates reference external resources such as Google Fonts (
fonts.googleapis.com) and the author's official website (01mvp.com) for CSS and documentation. These are legitimate, well-known, and safe external references. - [SAFE]: No evidence of prompt injection, data exfiltration, or persistence mechanisms was found. The skill operates locally on user-provided content and adheres to the security principles of a layout and formatting tool.
Audit Metadata