solidjs-expert

Pass

Audited by Gen Agent Trust Hub on Apr 24, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill's primary purpose is providing legitimate frontend development assistance, and its scripts are standard utility files for such tasks.
  • [COMMAND_EXECUTION]: The skill instructs the agent to execute shell commands to manage a 'Memory Protocol' using the file path .claude/context/memory/learnings.md. This is a mechanism for persisting architectural patterns and learned context across agent sessions.
  • [PROMPT_INJECTION]: The skill presents a surface for indirect prompt injection as it is designed to analyze and modify external source code provided by users.
  • Ingestion points: User-provided SolidJS code files accessed via search and read tools.
  • Boundary markers: Absent; the skill does not specify the use of delimiters or 'ignore' instructions for the data it processes.
  • Capability inventory: The agent has access to powerful filesystem and shell tools including Bash, Write, Edit, and Grep.
  • Sanitization: Absent; there is no defined process for validating or escaping the contents of the code files being analyzed.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 24, 2026, 06:57 AM