alterlab-vcd-ui-designer

Pass

Audited by Gen Agent Trust Hub on Apr 5, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill presents an indirect prompt injection surface (Category 8) due to its data-handling protocols. \n
  • Ingestion points: The agent is instructed to search the web for platform guidelines and read existing project files like brand guidelines and user research (SKILL.md). \n
  • Boundary markers: There are no specific instructions to use delimiters or ignore embedded instructions when processing external content. \n
  • Capability inventory: The skill possesses extensive capabilities to read project files, perform web searches, and write multiple markdown-based specifications. \n
  • Sanitization: No sanitization or escaping mechanisms for external content are defined before data is interpolated into outputs. \n- [SAFE]: The instructions do not attempt to bypass safety guidelines or use deceptive persona traits for malicious purposes. \n- [NO_CODE]: The skill is entirely instruction-based and does not include any executable scripts, binaries, or remote dependencies.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 5, 2026, 11:45 PM
Security Audit — agent-trust-hub — alterlab-vcd-ui-designer