figma-design-md-generator

Pass

Audited by Gen Agent Trust Hub on May 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a legitimate design utility with no evidence of malicious patterns, obfuscation, or unauthorized data access.
  • [CREDENTIALS_UNSAFE]: The documentation explicitly warns against hardcoding sensitive Figma API tokens and correctly instructs users to utilize environment variables for authentication.
  • [EXTERNAL_DOWNLOADS]: The skill interacts with the official Figma API (api.figma.com) and the Figma Community repository, which are well-known and trusted services.
  • [COMMAND_EXECUTION]: Standard development commands are provided for cloning the plugin source and building it using npm, which is expected for this type of tool.
Audit Metadata
Risk Level
SAFE
Analyzed
May 17, 2026, 10:19 PM