Back to skill

Security audit

Next Best Practices

Security checks across malware telemetry and agentic risk

Overview

This appears to be an instruction-only Next.js best-practices skill, with only minor caution needed around optional codemod commands and local MCP debugging examples.

This skill looks safe as documentation for Next.js development. Before installing or using it, be mindful that some examples are operational: only let an agent run codemods or query the local MCP debugging endpoint when you explicitly want that behavior, and review any file changes or debug output before sharing or committing.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.