web-design-guidelines

Pass

Audited by Gen Agent Trust Hub on Aug 20, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill fetches design guidelines from Vercel Labs' official GitHub repository at https://raw.githubusercontent.com/vercel-labs/web-interface-guidelines/main/command.md.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests data from external guidelines and user-provided files to perform its review, which represents a potential attack surface.
  • Ingestion points: External URL and local files identified by the user.
  • Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the guidelines fetch step.
  • Capability inventory: File reading and network retrieval capabilities.
  • Sanitization: No specific content sanitization or validation of the fetched markdown is mentioned.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 20, 2026, 11:06 AM
Security Audit — agent-trust-hub — web-design-guidelines