motion-foundations

Pass

Audited by Gen Agent Trust Hub on Sep 12, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: The skill provides structural rules and technical guidelines for animation implementation. It contains no instructions intended to bypass safety filters or override agent instructions.
  • [DATA_EXFILTRATION]: No network operations or sensitive file access commands were identified. The use of browser APIs such as navigator.hardwareConcurrency and window.matchMedia is strictly for performance and accessibility optimization.
  • [REMOTE_CODE_EXECUTION]: The skill does not perform remote script downloads or piped command execution. All code examples are static React/TypeScript.
  • [COMMAND_EXECUTION]: There are no shell commands, subprocess calls, or privilege escalation attempts.
  • [OBFUSCATION]: The content is clear and readable. No Base64 strings, zero-width characters, or homoglyph substitutions were detected.
  • [DYNAMIC_CONTEXT_INJECTION]: The skill does not utilize the dynamic context execution syntax to run shell commands at load time.
  • [INDIRECT_PROMPT_INJECTION]: The skill defines a base layer for UI development and does not ingest or process untrusted external data streams that could be exploited for prompt injection.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 12, 2026, 03:40 PM
Security Audit — agent-trust-hub — motion-foundations