convert-web-pages-to-browser-extensions
Pass
Audited by Gen Agent Trust Hub on Apr 7, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill instructions emphasize security best practices for browser extensions, including minimizing manifest permissions, adhering to Content Security Policy (CSP), and sanitizing user-generated content.
- [PROMPT_INJECTION]: The skill defines a workflow for processing untrusted external frontend code. This presents a surface for indirect prompt injection if source files contain instructions designed to mislead the agent. Mitigation is addressed through mandatory classification and auditing steps outlined in the conversion rules.
Audit Metadata