w-ui
Pass
Audited by Gen Agent Trust Hub on Sep 21, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process external context such as visual direction files (frontend-design), design guidelines (web-design-guidelines), and product documentation (PRODUCT.md). While this represents a surface for indirect prompt injection where malicious instructions could be embedded in these documents, the skill itself lacks any dangerous capabilities such as file writing, shell execution, or network operations that could be exploited.
- Ingestion points:
frontend-design,composition-patterns,web-design-guidelines,PRODUCT.md,DESIGN.md. - Boundary markers: None specified in the instructions.
- Capability inventory: None. The skill contains only natural language instructions and does not reference any shell commands, network tools, or file system modifications.
- Sanitization: None specified.
- [SAFE]: No malicious patterns, obfuscation, or unauthorized access attempts were detected. The skill primarily acts as a workflow guide for UI developers.
Audit Metadata