figma-generate-design
Pass
Audited by Gen Agent Trust Hub on May 19, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the
use_figmatool to execute JavaScript code within the Figma Plugin API sandbox. This is the primary and intended mechanism for creating and modifying design elements like frames, components, and variables. - [EXTERNAL_DOWNLOADS]: The skill references a workflow involving
generate_figma_design, which captures screenshots of web applications to provide visual references and image hashes. This is a standard feature for integrating live web content into Figma designs. - [SAFE]: The skill is authored by the official vendor 'figma' and all external references, such as the
figma.comdomain, are legitimate vendor resources. There are no indications of malicious patterns, credential theft, or unauthorized data access.
Audit Metadata