design-system-lead

Pass

Audited by Gen Agent Trust Hub on Sep 28, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides design system management functionality including token generation, component documentation scaffolding, and adoption metrics analysis via Python scripts.- [DATA_EXPOSURE_AND_EXFILTRATION]: No hardcoded credentials, sensitive file path access, or network exfiltration patterns were identified. The included scripts use only standard Python libraries and do not perform network operations.- [REMOTE_CODE_EXECUTION]: No remote code execution patterns, such as piping external scripts to shells or downloading untrusted packages, were found in the instructions or scripts.- [OBFUSCATION]: No encoded content, zero-width characters, or homoglyph-based obfuscation techniques were detected in the skill's source files.- [INDIRECT_PROMPT_INJECTION]: While the skill processes external data (brand colors and CSV adoption metrics), it does so using standard data parsing techniques (argparse, csv module) and lacks high-risk capabilities like network access or dynamic code evaluation, representing a safe implementation.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 28, 2026, 07:27 AM
Security Audit — agent-trust-hub — design-system-lead