skills/onmax/nuxt-skills/nuxt-studio/Gen Agent Trust Hub

nuxt-studio

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill mentions installing the nuxt-studio and @nuxt/content modules from the official npm registry.\n- [COMMAND_EXECUTION]: The skill provides standard developer commands for module installation and project initialization.\n
  • Evidence: npx nuxt module add nuxt-studio in SKILL.md.\n- [INDIRECT_PROMPT_INJECTION]: The skill facilitates editing external repository content (Markdown, MDC, YAML) and includes AI assistance features that utilize project context. This ingestion of external data is the primary purpose of the tool, and the skill describes using Zod validators to maintain data integrity.\n
  • Ingestion points: Project repository source files and AI context settings defined in references/live-editing.md.\n
  • Boundary markers: The skill does not explicitly detail prompt delimiters for the AI assistance feature.\n
  • Capability inventory: The skill has the capability to commit changes to Git repositories and upload files to external media storage driver (references/deployment.md, references/live-editing.md).\n
  • Sanitization: Employs schema-driven validation using Zod for collection properties to ensure data conforms to expected formats (references/configuration.md).
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 08:41 PM
Security Audit — agent-trust-hub — nuxt-studio