figma-use

Pass

Audited by Gen Agent Trust Hub on Jul 24, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a documentation-only resource that guides the agent on how to use the use_figma tool. It provides legitimate API references, best practices, and code snippets for Figma development. No executable code is shipped with the skill itself.
  • [SAFE]: No malicious patterns such as credential harvesting, data exfiltration, or persistence mechanisms were identified. All operations and code patterns are restricted to the official Figma Plugin API context.
  • [SAFE]: Encoding patterns used in the reference snippets (specifically in references/component-patterns.md) are identified as utility functions for generating unique cache keys from Figma node metadata and do not contain hidden malicious instructions or obfuscated commands.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 24, 2026, 08:06 PM
Security Audit — agent-trust-hub — figma-use