using-reacticx
Warn
Audited by Snyk on Mar 8, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (high risk: 0.70). The skill instructs running the Reacticx CLI and installing a GitHub fork (e.g., npx reacticx add which pulls from https://github.com/rit3zh/reacticx and the fork at https://github.com/sbaiahmed1/react-native-blur), which are runtime operations that fetch and execute remote code, so these URLs are runtime dependencies that can execute code.
Audit Metadata