vjsf
Pass
Audited by Gen Agent Trust Hub on Oct 3, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSDYNAMIC_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill documents fetching icon definitions from koumoul.com, which is the primary domain for the data-fair stack. These downloads are legitimate functional assets for the form engine.
- [DYNAMIC_EXECUTION]: The skill teaches the agent how to construct JavaScript expressions (using the js-eval mechanism) for conditional logic, labels, and data transformations within JSON schemas. These expressions are evaluated by the client-side form renderer.
- [INDIRECT_PROMPT_INJECTION]: The skill reviews and migrates user-provided JSON schemas, creating a surface for indirect instructions. 1. Ingestion points: config-schema.json and plugin schemas. 2. Boundary markers: No explicit markers are defined in the migration instructions. 3. Capability inventory: Form-level JavaScript evaluation via the layout engine. 4. Sanitization: The instructions do not define validation steps for the content of interpolated expressions.
Audit Metadata