migrate-to-shoehorn

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the @total-typescript/shoehorn package from the official NPM registry. This is a well-known utility within the TypeScript ecosystem for handling partial data in tests.
  • [COMMAND_EXECUTION]: The workflow includes a standard grep command to identify type assertions in local test files. This is a routine development operation for identifying migration targets.
  • [SAFE]: The skill's functionality aligns with its stated purpose of code migration. No evidence of credential theft, data exfiltration, or malicious persistence mechanisms was found in the provided files.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 09:48 PM
Security Audit — agent-trust-hub — migrate-to-shoehorn