skills/onmax/nuxt-skills/pnpm/Gen Agent Trust Hub

pnpm

Pass

Audited by Gen Agent Trust Hub on Feb 23, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill documents standard pnpm CLI operations, including executing scripts with pnpm run and binaries via pnpm exec or pnpm dlx.
  • [EXTERNAL_DOWNLOADS]: References trusted resources for CI/CD, such as official GitHub Actions from the pnpm and actions organizations.
  • [COMMAND_EXECUTION]: Provides documentation for .pnpmfile.cjs hooks, which are used to programmatically modify package configurations during the installation lifecycle.
  • [PROMPT_INJECTION]: The skill identifying that it may process configuration files like package.json which can contain untrusted code, and it provides remediation advice using the --ignore-scripts flag.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 23, 2026, 05:39 PM