html-architecture-diagrams
Pass
Audited by Gen Agent Trust Hub on Jul 7, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill instructions include a dedicated section on security best practices for generated code, explicitly forbidding the use of
innerHTMLwith variables or user-controlled data to prevent XSS vulnerabilities in the resulting HTML artifacts. - [SAFE]: The skill requires the generated output to be self-contained and restricts external resource loading (e.g., CDNs, npm packages) to well-known services like Google Fonts, minimizing the supply chain attack surface.
- [SAFE]: No malicious patterns such as data exfiltration, remote code execution, prompt injection, or obfuscation were detected in the instructions or example content.
- [SAFE]: The skill focuses on visualizing system architecture and does not request excessive permissions or access to sensitive local files.
Audit Metadata