html-artifact
Pass
Audited by Gen Agent Trust Hub on May 9, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues detected. The skill is designed to produce structured HTML artifacts for documentation purposes and explicitly instructs the agent to avoid using external JavaScript libraries or unvetted third-party scripts.
- [PROMPT_INJECTION]: The skill contains a surface for indirect prompt injection as it processes external data to generate HTML content. However, the instructions focus on synthesizing this information according to a strict design system rather than direct interpolation, and this behavior is essential for the skill's primary function.
- [EXTERNAL_DOWNLOADS]: Verified that the skill does not perform or encourage external downloads or remote script execution. The reference materials provided are local and the instructions prioritize self-contained HTML files.
Audit Metadata