vercel-react-best-practices
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOW
Full Analysis
- PROMPT_INJECTION (SAFE): The skill provides structural rules for code optimization. No override or bypass commands were detected in the instructions.
- DATA_EXPOSURE & EXFILTRATION (SAFE): No hardcoded credentials, sensitive file paths, or network communication patterns (e.g., curl, fetch) are present.
- REMOTE_CODE_EXECUTION (SAFE): The skill contains no executable code or scripts that download/execute remote content.
- INDIRECT PROMPT INJECTION (LOW): While the skill is designed to process external code (React/Next.js components), it acts as an advisory guideline and lacks the capability to execute code or perform network operations, posing minimal risk.
Audit Metadata