add-dui-component

Pass

Audited by Gen Agent Trust Hub on Apr 11, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns, suspicious downloads, or credential harvesting were detected. The skill's operations are consistent with its stated purpose of assisting in UI library integration.\n- [COMMAND_EXECUTION]: The skill utilizes the cat command to inspect local component source files to identify exported component families. This operation is limited to the local package structure.\n- [INDIRECT_PROMPT_INJECTION]: The skill accepts component names from the user to construct file paths for inspection and configuration updates. (1) Ingestion points: user input for component name in Step 1. (2) Boundary markers: absent. (3) Capability inventory: local file reading and updating of configuration files. (4) Sanitization: absent. This represents a standard operational surface for a development tool and is considered low-risk.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 11, 2026, 07:30 PM