shadcn
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS] (SAFE): The skill recommends using
npx shadcn@latestto install components. While this involves executing a remote script, it is the standard and official installation method for a widely-used industry library. - [SAFE]: The skill consists purely of instructions, component lists, and code snippets for UI development. No evidence of prompt injection, data exfiltration, or obfuscation was found.
Audit Metadata