ui-ux-pro-max

Pass

Audited by Gen Agent Trust Hub on Aug 28, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONPRIVILEGE_ESCALATION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides a set of Python scripts and CLI command examples to search its internal database and persist design system documentation to the filesystem. These commands are local to the project environment and are used to fulfill the core functionality of the skill.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user queries and data from internal CSV files, which are then interpolated into recommendations. While the skill lacks explicit boundary markers for these interpolations, the potential attack surface is minimized as all processed data is contained within the local repository and the operations are restricted to the skill's primary design purpose.
  • [PRIVILEGE_ESCALATION]: The documentation includes setup instructions that suggest using administrative commands (sudo) to install Python prerequisites on Linux systems. This is part of the standard environment preparation and does not involve automated script execution with elevated privileges.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 28, 2026, 12:25 AM
Security Audit — agent-trust-hub — ui-ux-pro-max