skills/fe-dudu/skills/oh-my-frontend/Gen Agent Trust Hub

oh-my-frontend

Pass

Audited by Gen Agent Trust Hub on Sep 23, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill was analyzed for prompt injection techniques (e.g., DAN, instructions to ignore safety filters) across SKILL.md and all references, and no such patterns were found.
  • [SAFE]: No instances of data exfiltration or sensitive file access (e.g., .ssh, .aws, .env) were identified. The instructions in observability.md and security-and-privacy.md explicitly warn against logging secrets or PII.
  • [SAFE]: Analysis for obfuscation, including Base64 encoding, zero-width characters, and homoglyphs, returned no findings.
  • [SAFE]: The skill contains no remote code execution patterns, unauthorized package installations, or privilege escalation commands.
  • [SAFE]: The skill uses Markdown and YAML frontmatter for metadata and instructions, with no evidence of dynamic context injection or hidden execution placeholders.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 23, 2026, 02:40 PM
Security Audit — agent-trust-hub — oh-my-frontend