convert-web-pages-to-browser-extensions

Pass

Audited by Gen Agent Trust Hub on Apr 7, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill instructions emphasize security best practices for browser extensions, including minimizing manifest permissions, adhering to Content Security Policy (CSP), and sanitizing user-generated content.
  • [PROMPT_INJECTION]: The skill defines a workflow for processing untrusted external frontend code. This presents a surface for indirect prompt injection if source files contain instructions designed to mislead the agent. Mitigation is addressed through mandatory classification and auditing steps outlined in the conversion rules.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 7, 2026, 08:38 AM