custom-paint

Pass

Audited by Gen Agent Trust Hub on Jul 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists entirely of technical documentation and static Dart code examples for UI rendering. No executable scripts, subprocess calls, or network operations are included.
  • [PROMPT_INJECTION]: The provided 'Output contract' defines formatting rules for the agent's responses. These instructions are functional and do not attempt to bypass safety filters or override core agent behavior.
  • [DATA_EXFILTRATION]: No access to sensitive file paths, environment variables, or remote exfiltration endpoints was detected.
  • [REMOTE_CODE_EXECUTION]: The skill does not include any patterns for downloading external scripts, installing unverified packages, or performing dynamic code execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 1, 2026, 10:41 AM
Security Audit — agent-trust-hub — custom-paint