Security
Independent checks from skills.sh's audit partners.
Independent checks from skills.sh's audit partners.
Independent checks from skills.sh's audit partners.
Warn5 providerslatest audit Apr 16, 2026
Independent checks from skills.sh's audit partners.
The skill provides architectural patterns for building AI agents using Trigger.dev. It utilizes trusted libraries such as the Vercel AI SDK and follows industry-standard orchestration practices. No malicious behavior or hardcoded credentials were detected. A low-risk surface for indirect prompt injection exists because the provided templates ingest untrusted data from external sources and interpolate it into LLM prompts without explicit boundary markers or sanitization.
Detected behaviors
No alerts
No issues
5/5 files flagged
Score: 93/100 · 2 sections analyzed