tui-cell

Pass

Audited by Gen Agent Trust Hub on Jun 13, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No override instructions, safety bypasses, or system prompt extraction attempts were found.
  • [DATA_EXFILTRATION]: No network operations, hardcoded credentials, or access to sensitive local file paths (such as .ssh or .env) were detected.
  • [REMOTE_CODE_EXECUTION]: No commands for downloading or executing remote scripts (curl|bash, pip install, etc.) are present.
  • [OBFUSCATION]: No hidden content, Base64-encoded commands, homoglyphs, or zero-width characters were identified.
  • [DYNAMIC_EXECUTION]: The skill generates UI specifications but does not involve runtime code compilation, unsafe deserialization, or dynamic process injection.
  • [COMMAND_EXECUTION]: No shell commands, privilege escalation attempts (sudo), or persistence mechanisms were found.
  • [INDIRECT_PROMPT_INJECTION]: While the skill processes user-provided JSON models to generate UI, it lacks dangerous capabilities (network/file access) that could be exploited via malicious input data.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 13, 2026, 04:14 AM
Security Audit — agent-trust-hub — tui-cell