web-design-guidelines

Pass

Audited by Gen Agent Trust Hub on Sep 10, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill fetches a guidelines document from Vercel Labs' official GitHub repository at raw.githubusercontent.com/vercel-labs/web-interface-guidelines. This is an expected operation for retrieving current design rules.
  • [INDIRECT_PROMPT_INJECTION]: The skill analyzes user-provided source code for compliance. While ingesting untrusted file content can be an attack surface for indirect prompt injection, the skill acts as a passive reviewer using rules fetched from a trusted source.
  • [COMMAND_EXECUTION]: No unauthorized command execution patterns were detected; the skill performs file reading and network fetching using standard tools.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 10, 2026, 10:55 AM
Security Audit — agent-trust-hub — web-design-guidelines