ui-ux-pro-max
Pass
Audited by Gen Agent Trust Hub on Apr 11, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill's typography pairing data includes links to Google Fonts for implementation guidance. These are references to a well-known and trusted service, provided neutrally for developer use.\n- [COMMAND_EXECUTION]: The skill uses a local Python search engine (
search.py) to query UI/UX guidelines from provided CSV files. Analysis of the source code confirms it performs only safe, standard library file operations and does not execute arbitrary shell commands or untrusted external code.\n- [PROMPT_INJECTION]: The skill implements a pattern where it generates design guidelines in markdown files and instructs the agent to treat them as a 'Global Source of Truth.' While this creates an indirect prompt injection surface where the agent follows generated rules, this is a standard design-tool pattern essential to the skill's purpose and is implemented without bypassing agent safety constraints.
Audit Metadata