install
Pass
Audited by Gen Agent Trust Hub on Mar 3, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill fetches a JSON registry configuration from the author's official GitHub repository at github.com/udecode/dotai.
- [COMMAND_EXECUTION]: Executes the shadcn utility via npx to add components to the local environment.
- [COMMAND_EXECUTION]: Instructs the user to add a postinstall script to package.json which executes npx skiller@latest apply. This is a mechanism used for lifecycle management of the tool's functionality.
Audit Metadata