ss-review
Pass
Audited by Gen Agent Trust Hub on May 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues were detected. The skill's functionality is limited to reading and analyzing files for UI best practices using restricted tools (Read, Grep, and Glob).
- [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection as it ingests data from external files specified in arguments. However, this is considered low risk given the skill's restricted toolset. 1. Ingestion points: File content accessed via the Read tool using path from $ARGUMENTS. 2. Boundary markers: Absent. 3. Capability inventory: Read, Grep, and Glob tools for file system inspection as defined in frontmatter. 4. Sanitization: Absent.
Audit Metadata