web-typography

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: The skill is composed entirely of markdown documentation and CSS code snippets. There are no executable files (.py, .js, .sh, etc.) or binary assets included in the skill package.
  • [SAFE]: All external links point to established, well-known typography tools, design resources, and official documentation (e.g., Google Fonts, Utopia.fyi, Fonttools). These are used for their intended educational purpose.
  • [SAFE]: The command-line example provided (pyftsubset) is presented as a manual optimization step for developers within a documentation block. It does not instruct the agent to execute arbitrary commands or download untrusted scripts automatically.
  • [SAFE]: The skill uses an Amazon affiliate link for a referenced book. While this monetizes the link for the author, it is transparently presented in a 'Further Reading' section and does not constitute a technical security risk or data exfiltration vector.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 07:30 AM
Security Audit — agent-trust-hub — web-typography