vercel-react-best-practices

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [No Code] (SAFE): The skill consists of Markdown rule files and JSON metadata. No executable scripts (such as the build scripts mentioned in the README) were included in the analyzed file set.
  • [Prompt Injection] (SAFE): No instructions attempting to override agent behavior, bypass safety filters, or extract system prompts were detected.
  • [Data Exposure] (SAFE): No hardcoded credentials, API keys, or sensitive file paths were found.
  • [External Downloads] (SAFE): The skill references established libraries (e.g., 'swr', 'lru-cache', 'better-all') and standard build tools (pnpm). These references are appropriate for the context and originate from a trusted organization (Vercel).
  • [Obfuscation] (SAFE): All content is in clear text with no evidence of encoding, zero-width characters, or other obfuscation techniques.
  • [Indirect Prompt Injection] (SAFE): The skill is a static knowledge base. It does not ingest untrusted external data at runtime, and its examples are clearly delimited within markdown code blocks.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:22 PM