tui-search

Pass

Audited by Gen Agent Trust Hub on Jun 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill operates as a structural template and instruction set for formatting text and JSON metadata. It does not include any scripts, external dependencies, or commands that interact with the host system.
  • [INDIRECT_PROMPT_INJECTION]: Surface analysis shows the skill accepts structured JSON input to define UI properties. However, because the skill lacks actionable capabilities—such as network exfiltration, file system modification, or command execution—the risk of data-driven exploitation is negligible.
  • [DATA_EXPOSURE]: No hardcoded credentials, API keys, or sensitive file paths were found. The skill uses standard UI styling parameters (hex colors, font names) and local coordinate systems.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 13, 2026, 04:14 AM
Security Audit — agent-trust-hub — tui-search