web-design-guidelines
Pass
Audited by Gen Agent Trust Hub on Sep 10, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill fetches a guidelines document from Vercel Labs' official GitHub repository at
raw.githubusercontent.com/vercel-labs/web-interface-guidelines. This is an expected operation for retrieving current design rules. - [INDIRECT_PROMPT_INJECTION]: The skill analyzes user-provided source code for compliance. While ingesting untrusted file content can be an attack surface for indirect prompt injection, the skill acts as a passive reviewer using rules fetched from a trusted source.
- [COMMAND_EXECUTION]: No unauthorized command execution patterns were detected; the skill performs file reading and network fetching using standard tools.
Audit Metadata