skills/tambo-ai/tambo/generative-ui/Gen Agent Trust Hub

generative-ui

Pass

Audited by Gen Agent Trust Hub on Apr 30, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to perform standard development tasks using the vendor's official CLI tool. This is the primary and expected function of the skill.
  • Evidence: SKILL.md contains instructions to execute npx tambo create-app, npx tambo init, and npm run dev to scaffold and start the project.
  • [EXTERNAL_DOWNLOADS]: The skill manages dependencies by installing well-known and vendor-specific packages from official registries.
  • Evidence: references/tools-and-context.md specifies the installation of @modelcontextprotocol/sdk, zod, and zod-to-json-schema via standard package management commands.
  • [SAFE]: The skill demonstrates a strong security posture by explicitly directing users toward secure authentication flows and recommending the redaction of sensitive information when interacting with support.
  • Evidence: Instructions in SKILL.md state to never ask users for manual API key input and to redact keys from issue reports.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 30, 2026, 01:45 PM