foundation

Pass

Audited by Gen Agent Trust Hub on Jun 30, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns, obfuscation, or unauthorized data access were detected in the skill instructions or associated templates. The skill focuses on generating architectural documentation and configuration files for design systems.
  • [DATA_EXFILTRATION]: The skill instructions include environment detection by reading standard project configuration files such as package.json, lockfiles, and framework-specific configs (e.g., next.config.js). This is a legitimate functional requirement for a developer tool to identify the existing technology stack and does not target sensitive user credentials or system files.
  • [EXTERNAL_DOWNLOADS]: The skill mentions and recommends several well-known and reputable third-party libraries (e.g., Radix UI, React Aria, Ark UI, Floating UI). It includes explicit instructions for the agent to verify the latest releases and issue status of these libraries via web search before recommending them, which is a secure and responsible practice for maintaining supply chain integrity.
  • [PROMPT_INJECTION]: No evidence of prompt injection, role-play bypasses, or instructions to ignore safety guidelines were found within the provided files. The instructions are focused on guiding the agent through a structured design system implementation workflow.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 30, 2026, 12:43 PM
Security Audit — agent-trust-hub — foundation