NYC

vercel-react-best-practices

Pass

Audited by Gen Agent Trust Hub on Feb 16, 2026

Risk Level: LOW
Full Analysis
  • PROMPT_INJECTION (SAFE): The skill provides structural rules for code optimization. No override or bypass commands were detected in the instructions.
  • DATA_EXPOSURE & EXFILTRATION (SAFE): No hardcoded credentials, sensitive file paths, or network communication patterns (e.g., curl, fetch) are present.
  • REMOTE_CODE_EXECUTION (SAFE): The skill contains no executable code or scripts that download/execute remote content.
  • INDIRECT PROMPT INJECTION (LOW): While the skill is designed to process external code (React/Next.js components), it acts as an advisory guideline and lacks the capability to execute code or perform network operations, posing minimal risk.
Audit Metadata
Risk Level
LOW
Analyzed
Feb 16, 2026, 06:40 AM