theme-factory
Pass
Audited by Gen Agent Trust Hub on Aug 19, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides structured design specifications including hex codes and font pairings. Analysis of the instructions and the themes directory shows no evidence of command execution, network activity, or credential harvesting.- [INDIRECT_PROMPT_INJECTION]: The skill has a surface for indirect prompt injection as it ingests and processes user-provided artifacts (slides, documents, HTML pages).
- Ingestion points: Artifacts provided for styling as described in SKILL.md.
- Boundary markers: None identified; the instructions do not specify delimiters for artifact content.
- Capability inventory: The skill performs file reading from the local themes directory and modifies the styling of input artifacts.
- Sanitization: No explicit sanitization or filtering of artifact content is mentioned.
Audit Metadata