skills/involvex/skills/design-md/Gen Agent Trust Hub

design-md

Pass

Audited by Gen Agent Trust Hub on Apr 3, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill interacts with the Stitch platform, a well-known service from Google, to retrieve project metadata and design assets using authorized MCP tools.
  • [SAFE]: All external data fetching is performed via the web_fetch tool targeting Google-hosted resources (stitch.withgoogle.com), which is consistent with the skill's documented purpose.
  • [SAFE]: The instructions focus on analyzing CSS and Tailwind patterns to generate descriptive documentation, with no evidence of malicious command execution, privilege escalation, or persistence mechanisms.
  • [SAFE]: No obfuscated content, hardcoded credentials, or suspicious remote code execution patterns were found in the provided files.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 3, 2026, 06:23 PM
Security Audit — agent-trust-hub — design-md