component-audit
Pass
Audited by Gen Agent Trust Hub on Sep 3, 2026
Risk Level: SAFENO_CODEINDIRECT_PROMPT_INJECTION
Full Analysis
- [NO_CODE]: The skill contains no executable code, scripts, or automated configuration; it consists entirely of descriptive natural language instructions for an AI agent flow.
- [INDIRECT_PROMPT_INJECTION]: The skill's workflow involves reading and auditing UI component files. This ingestion of external data constitutes an attack surface where instructions hidden in code comments or metadata could influence the agent's audit results.
- Ingestion points: UI component files identified via file system globbing (SKILL.md).
- Boundary markers: The instructions do not specify any delimiters or safety prompts to isolate code content from instructions.
- Capability inventory: No file-writing, network access, or shell execution capabilities are defined or requested in the skill.
- Sanitization: There is no mention of sanitizing or escaping the content of the files being reviewed.
Audit Metadata