nextjs-typescript-tailwindcss-supabase

Pass

Audited by Gen Agent Trust Hub on Feb 15, 2026

Risk Level: LOW
Full Analysis
  • Prompt Injection (SAFE): The skill contains standard instructional language for code generation and does not attempt to bypass safety filters or override system prompts.
  • Data Exposure & Exfiltration (SAFE): There are no commands that access sensitive local files or initiate unauthorized network connections.
  • Obfuscation (SAFE): The content is clear markdown with no signs of encoding, zero-width characters, or hidden payloads.
  • Unverifiable Dependencies & RCE (SAFE): No package installations or remote script executions are present in the skill definition.
  • Indirect Prompt Injection (LOW): The skill is designed to process user specifications to generate code. While this is an ingestion point for untrusted data, the skill does not have autonomous execution or write capabilities that would lead to a high-risk scenario.
Audit Metadata
Risk Level
LOW
Analyzed
Feb 15, 2026, 09:17 PM