web-design-guidelines

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill fetches guidelines from https://raw.githubusercontent.com/vercel-labs/web-interface-guidelines/main/command.md. This resource originates from a trusted organization and is used for its intended auditing purpose.- [INDIRECT_PROMPT_INJECTION]: The skill processes auditing rules and output formatting instructions fetched from a remote markdown file. This creates a surface where external content influences agent behavior.
  • Ingestion points: Guidelines are retrieved from a remote GitHub repository at SKILL.md via the Guidelines Source section.
  • Boundary markers: No explicit delimiters or boundary markers are defined to isolate the fetched instructions from the skill's system logic.
  • Capability inventory: The skill is authorized to read local files and generate text audit results based on the external rules.
  • Sanitization: The skill does not implement specific sanitization for the markdown content fetched from the remote source.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 06:55 AM
Security Audit — agent-trust-hub — web-design-guidelines