card-xiaohongshu

Pass

Audited by Gen Agent Trust Hub on Aug 26, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill loads Tailwind CSS from 'https://cdn.tailwindcss.com' and typography from 'https://fonts.googleapis.com'. Both are well-known, trusted resources for front-end development and do not pose a security risk in this context.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process user-provided content to generate cards. While it lacks explicit sanitization instructions for embedded prompt injections in the user content, this is an inherent surface for visualization skills and is considered a low risk, handled by the underlying model's safety guardrails.
  • [SAFE]: No malicious patterns such as command execution, data exfiltration, obfuscation, or privilege escalation were found. The skill operates purely as a content visualization tool.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 26, 2026, 05:56 PM
Security Audit — agent-trust-hub — card-xiaohongshu