web-design-guidelines
Pass
Audited by Gen Agent Trust Hub on Aug 20, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill fetches design guidelines from Vercel Labs' official GitHub repository at https://raw.githubusercontent.com/vercel-labs/web-interface-guidelines/main/command.md.
- [INDIRECT_PROMPT_INJECTION]: The skill ingests data from external guidelines and user-provided files to perform its review, which represents a potential attack surface.
- Ingestion points: External URL and local files identified by the user.
- Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the guidelines fetch step.
- Capability inventory: File reading and network retrieval capabilities.
- Sanitization: No specific content sanitization or validation of the fetched markdown is mentioned.
Audit Metadata