animating-react-native-expo
Warn
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: MEDIUMCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION] (MEDIUM): The file 'SKILL.md' contains an instruction for the agent to execute 'node {baseDir}/scripts/check-setup.mjs'. Since the script's content is missing from the provided skill folder, its security profile cannot be determined, which could allow for the execution of unverified or malicious commands on the system.
- [EXTERNAL_DOWNLOADS] (LOW): The skill instructs the agent to install multiple npm packages ('react-native-reanimated', 'react-native-worklets', 'react-native-gesture-handler') using 'npx expo install'. While these are well-known and trusted libraries from Software Mansion and Expo, any automated installation of external code presents a baseline risk.
Audit Metadata