figma-generate-design
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [NO_CODE]: The skill contains no executable scripts or binary files, consisting solely of informational markdown and configuration.
- [EXTERNAL_DOWNLOADS]: The skill references an external repository owned by Figma on GitHub. As a well-known technology service, references to their official repositories for documentation purposes are considered safe.
- [INDIRECT_PROMPT_INJECTION]: While the skill's purpose involves processing user-provided code and descriptions which are external ingestion surfaces, the manifest itself contains no logic that would facilitate an attack. Absence of executable tools further mitigates risk.
Audit Metadata