Content revision r2 Medium Risk🌐 Network access⚙️ External commands
Build and Improve Mobile Applications
Mobile teams must coordinate platform architecture, tooling, testing, performance, and release requirements. This skill provides practical guidance and examples for native and cross-platform workflows.
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Agent request
Review the Skillstore skill "mobile-engineer" from https://skillstore.io/skills/zl2023github-mobile-engineer.md and its manifest at https://skillstore.io/api/skills/zl2023github-mobile-engineer/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.
Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
All 55 static alerts are false positives caused by Markdown syntax, mobile tool names, explicit HTTPS examples, and a fixed Xcode cache path. No prompt injection, credential exposure, obfuscated payload, host reconnaissance, or unbounded root deletion appears in the reviewed files. Semantic review identified unpinned package execution and unconditional response-body logging as medium risks.
Setup examples invoke react-native@latest, unversioned create-expo-app, and unpinned npm dependencies. A compromised future release could execute during project initialization or installation.
The commands directly resolve and execute packages without immutable versions or integrity controls. This is a recognized software supply-chain exposure.
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.