tui-quickstart

Pass

Audited by Gen Agent Trust Hub on Jun 23, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's primary function is to transform a JSON input model into formatted TUI text and structured JSON blocks. No malicious patterns or security risks were identified.
  • [DATA_EXPOSURE]: Analysis of the skill body and examples confirms there are no hardcoded credentials, API keys, or access to sensitive system file paths.
  • [REMOTE_CODE_EXECUTION]: The skill does not contain any commands for downloading external scripts, installing packages, or executing dynamic code. The PENCIL_BATCH_DESIGN output is a domain-specific language for a design tool and is not executed in the host environment.
  • [PROMPT_INJECTION]: The instructions do not attempt to override system safety guidelines or extract system prompts. The 'Output Contract' defines strict boundaries for generated content.
  • [EXTERNAL_DOWNLOADS]: The skill references documentation located at full-stack-skills/tui-sources/components.json. As this repository belongs to the skill's author ('full-stack-skills'), it is categorized as a standard vendor resource and does not pose a security risk.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 23, 2026, 04:07 PM
Security Audit — agent-trust-hub — tui-quickstart