algorithmic-art
Pass
Audited by Gen Agent Trust Hub on Sep 10, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill fetches the p5.js library from Cloudflare's CDNJS and font resources from Google Fonts. These are well-known services commonly used for web development.
- [INDIRECT_PROMPT_INJECTION]: The skill processes user input to derive the 'algorithmic philosophy' and 'conceptual seed' used for code generation.
- Ingestion points: User requests and instructions provide the foundation for creative output (SKILL.md).
- Boundary markers: The instructions specify that user input "should not constrain creative freedom" and should be used as a foundation rather than a literal template.
- Capability inventory: The skill generates and writes self-contained HTML/JavaScript artifacts to be executed in the browser.
- Sanitization: No explicit sanitization or filtering of user-provided conceptual input is mentioned before it influences the generated code.
Audit Metadata