package-linter
Pass
Audited by Gen Agent Trust Hub on Mar 19, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a set of static guidelines and templates for an AI agent to follow when assisting with package management tasks. It does not contain any scripts, commands, or logic that would execute outside of the agent's typical file manipulation capabilities.
- [EXTERNAL_DOWNLOADS]: The instructions reference standard and well-known development tools such as
tsup,automd,vite, andtypescript. It also points to the official NPM registry (registry.npmjs.org). These are standard ecosystem dependencies for the described task. - [DATA_EXFILTRATION]: The skill includes hardcoded metadata for the
authorfield (name, email, and GitHub URL). This information is necessary for the skill's stated purpose of normalizing package configurations and does not constitute a security risk or unauthorized data exposure.
Audit Metadata