imprint
Pass
Audited by Gen Agent Trust Hub on Jul 26, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: The skill possesses an attack surface for indirect prompt injection as it processes untrusted data from component files. 1. Ingestion points: UI component source files (SKILL.md Step 1). 2. Boundary markers: No explicit security delimiters are defined for the generated registry file. 3. Capability inventory: Local file system read and write access. 4. Sanitization: Instructions specifically limit data extraction to visual styling tokens and CSS classes, which serves as a natural sanitization layer against broader text-based injections.
Audit Metadata