nuxt-studio
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill mentions installing the
nuxt-studioand@nuxt/contentmodules from the official npm registry.\n- [COMMAND_EXECUTION]: The skill provides standard developer commands for module installation and project initialization.\n - Evidence:
npx nuxt module add nuxt-studioinSKILL.md.\n- [INDIRECT_PROMPT_INJECTION]: The skill facilitates editing external repository content (Markdown, MDC, YAML) and includes AI assistance features that utilize project context. This ingestion of external data is the primary purpose of the tool, and the skill describes using Zod validators to maintain data integrity.\n - Ingestion points: Project repository source files and AI context settings defined in
references/live-editing.md.\n - Boundary markers: The skill does not explicitly detail prompt delimiters for the AI assistance feature.\n
- Capability inventory: The skill has the capability to commit changes to Git repositories and upload files to external media storage driver (
references/deployment.md,references/live-editing.md).\n - Sanitization: Employs schema-driven validation using Zod for collection properties to ensure data conforms to expected formats (
references/configuration.md).
Audit Metadata