project-infographic
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [SAFE]: The skill instructions and associated files were analyzed for malicious patterns such as credential theft, persistence, and obfuscation, with none found.
- [COMMAND_EXECUTION]: The skill documentation includes an example command for exporting infographics to PNG format using
npx playwright. This is a standard utility used for its intended purpose of capturing browser-rendered content. - [PROMPT_INJECTION]: The skill ingests untrusted project documentation to generate visual content, presenting an indirect prompt injection surface. • Ingestion points: Project documentation and knowledge files. • Boundary markers: Employs a structured design brief and truth labels to verify claims. • Capability inventory: Includes image generation, web browsing, and shell-based screenshotting tools. • Sanitization: Relies on manual agent verification against source artifacts.
Audit Metadata