prototype
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONDYNAMIC_EXECUTION
Full Analysis
- [DYNAMIC_EXECUTION]: The skill generates logic modules and UI components which are executed at runtime using local task runners like pnpm, python, or bun via the Bash tool to answer design questions.
- [COMMAND_EXECUTION]: Uses the Bash tool to execute shell commands for running the created prototypes and interacting with the local development environment.
- [INDIRECT_PROMPT_INJECTION]: The skill has a surface for indirect injection as it ingests user prompts and repository data to generate its output.
- Ingestion points: User instructions and existing project files accessed via Read, Grep, and Glob tools.
- Boundary markers: Absent; instructions do not mandate the use of delimiters for external data.
- Capability inventory: Access to Bash, Write, and Edit tools for code creation and execution.
- Sanitization: Absent; the agent synthesizes code based on the provided context without explicit filtering steps.
Audit Metadata