iblai-account
Pass
Audited by Gen Agent Trust Hub on May 1, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: Fetches an environment variable template and brand guidelines from the vendor's official GitHub repository (iblai/vibe).- [COMMAND_EXECUTION]: Instructs the agent to update and use the vendor's CLI tools, such as
iblai-app-cliand@iblai/cli, for generating the account page and running local tests.- [PROMPT_INJECTION]: The reference code ingests data fromlocalStorage(userData,tenants) to populate the account UI. While this represents a potential surface for indirect prompt injection if the stored data is compromised, it is a standard pattern for the skill's primary purpose and uses standard JSON parsing.
Audit Metadata