angular-architect
Pass
Audited by Gen Agent Trust Hub on Aug 2, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The workflow includes a step to run
ng build --configuration productionto verify bundle sizes. This is a standard developer command and is considered safe within the context of an Angular architect skill.\n- [INDIRECT_PROMPT_INJECTION]: The skill processes user-defined requirements to generate application architecture and code, presenting a standard attack surface.\n - Ingestion points: Requirement analysis step in SKILL.md where user input is evaluated.\n
- Boundary markers: The skill contains a 'Constraints' section with 'MUST DO' and 'MUST NOT DO' instructions to maintain architectural integrity.\n
- Capability inventory: The skill suggests the use of the Angular CLI for build verification.\n
- Sanitization: The skill does not explicitly instruct the agent to sanitize incoming requirement text, relying instead on its architectural constraints.
Audit Metadata