ui-convert-writer-pencil
Pass
Audited by Gen Agent Trust Hub on Apr 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill processes structured design data from local IR JSON files to generate design elements via the Pencil.dev MCP interface. It follows a serialized execution model with batch limits and idempotency checks to ensure stability and correctness.
- [SAFE]: File system interactions are limited to the local project directory for reading design artifacts (tokens, components, pages) and maintaining a design registry. No access to sensitive system files or credentials was detected.
- [SAFE]: The skill does not perform any network operations, download external code, or utilize obfuscation techniques. All design operations are performed through explicit MCP tool calls for design creation and visual validation.
Audit Metadata