vue
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill metadata references official documentation and reputable community repositories as its source material.
- [INDIRECT_PROMPT_INJECTION]: The skill provides patterns for fetching external data using the
fetchAPI. This constitutes a standard injection surface in web development, as untrusted data from an API could influence application state. - Ingestion points: Example code in
references/core-new-apis.mdandreferences/script-setup-macros.mddemonstrating data fetching. - Boundary markers: None present in the documentation examples.
- Capability inventory: Demonstrates network request capabilities (fetch) and reactivity management.
- Sanitization: Sanitization of API responses is not explicitly demonstrated in these reference snippets, which is expected for basic framework documentation.
Audit Metadata