oh-my-frontend
Pass
Audited by Gen Agent Trust Hub on Sep 23, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill was analyzed for prompt injection techniques (e.g., DAN, instructions to ignore safety filters) across SKILL.md and all references, and no such patterns were found.
- [SAFE]: No instances of data exfiltration or sensitive file access (e.g., .ssh, .aws, .env) were identified. The instructions in observability.md and security-and-privacy.md explicitly warn against logging secrets or PII.
- [SAFE]: Analysis for obfuscation, including Base64 encoding, zero-width characters, and homoglyphs, returned no findings.
- [SAFE]: The skill contains no remote code execution patterns, unauthorized package installations, or privilege escalation commands.
- [SAFE]: The skill uses Markdown and YAML frontmatter for metadata and instructions, with no evidence of dynamic context injection or hidden execution placeholders.
Audit Metadata