framed-grid-layout
Warn
Audited by Gen Agent Trust Hub on Aug 16, 2026
Risk Level: MEDIUMEXTERNAL_DOWNLOADS
Full Analysis
- [OBFUSCATION]: The file
demo/index.htmlcontains a large Base64-encoded payload in theencodedHtmlvariable representing an entire HTML document. This technique is used to bundle demo content but obscures the code from static inspection.- [EXTERNAL_DOWNLOADS]: The skill references and fetches resources from well-known services: https://fonts.googleapis.comandhttps://fonts.gstatic.comfor typography.https://cdn.tailwindcss.com/for styling logic.https://code.iconify.designfor icon assets.- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process external UI references and metadata from the vendor's platform. * Ingestion points:demo/source.jsonand design references indemo/PROMPT.md. * Boundary markers: Not present. * Capability inventory: Restricted to CSS and HTML rendering within a sandboxed environment. * Sanitization: The demo uses an iframe withsandbox="allow-scripts"and a strict Content Security Policy (CSP).
Audit Metadata