web-design-guidelines
Pass
Audited by Gen Agent Trust Hub on Sep 4, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill fetches guidelines from
https://raw.githubusercontent.com/vercel-labs/web-interface-guidelines/main/command.md. This resource originates from a trusted organization and is used for its intended auditing purpose.- [INDIRECT_PROMPT_INJECTION]: The skill processes auditing rules and output formatting instructions fetched from a remote markdown file. This creates a surface where external content influences agent behavior. - Ingestion points: Guidelines are retrieved from a remote GitHub repository at
SKILL.mdvia the Guidelines Source section. - Boundary markers: No explicit delimiters or boundary markers are defined to isolate the fetched instructions from the skill's system logic.
- Capability inventory: The skill is authorized to read local files and generate text audit results based on the external rules.
- Sanitization: The skill does not implement specific sanitization for the markdown content fetched from the remote source.
Audit Metadata