alterlab-vcd-ui-designer
Pass
Audited by Gen Agent Trust Hub on Apr 5, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- [PROMPT_INJECTION]: The skill presents an indirect prompt injection surface (Category 8) due to its data-handling protocols. \n
- Ingestion points: The agent is instructed to search the web for platform guidelines and read existing project files like brand guidelines and user research (SKILL.md). \n
- Boundary markers: There are no specific instructions to use delimiters or ignore embedded instructions when processing external content. \n
- Capability inventory: The skill possesses extensive capabilities to read project files, perform web searches, and write multiple markdown-based specifications. \n
- Sanitization: No sanitization or escaping mechanisms for external content are defined before data is interpolated into outputs. \n- [SAFE]: The instructions do not attempt to bypass safety guidelines or use deceptive persona traits for malicious purposes. \n- [NO_CODE]: The skill is entirely instruction-based and does not include any executable scripts, binaries, or remote dependencies.
Audit Metadata