next-forge

Pass

Audited by Gen Agent Trust Hub on Apr 6, 2026

Risk Level: SAFE
Full Analysis
  • Standard Development Workflows: The skill recognizes and assists with routine developer tasks such as project initialization and component management using well-known tools like npx. These operations are standard for the Next.js and Turborepo ecosystem and align with the skill's purpose as a developer assistant.\n- Secure Configuration Guidance: The skill provides instructions for managing sensitive configuration through environment variable files and validates them using Zod. This encourages the standard security practice of keeping credentials separate from the codebase while ensuring they meet expected formats.\n- Project Integrity Validations: Validation rules are included to help developers maintain their configuration by identifying deprecated syntax and suggesting current best practices, such as updating Turborepo task definitions or Prisma connection settings.\n- Workspace-Aware Assistance: The skill is configured to monitor and provide guidance for the '@repo/*' workspace packages common in next-forge monorepos, enabling contextually relevant support for editing shared internal libraries.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 6, 2026, 11:10 PM