stitch-react-components

Pass

Audited by Gen Agent Trust Hub on Apr 2, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Retrieves design assets from Google Cloud Storage via the Stitch service using a helper bash script. These downloads are required to obtain the source HTML for code conversion.
  • [COMMAND_EXECUTION]: Instructs the agent to execute shell commands for installing project dependencies (npm install) and running the fetch script (bash scripts/fetch-stitch.sh). These operations are consistent with the skill's primary function.
  • [SAFE]: The skill follows established frontend development best practices, including component modularization, logic isolation in hooks, and type safety with TypeScript. No malicious patterns, obfuscation, or unauthorized data exfiltration were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 2, 2026, 06:28 AM