theme-factory
Pass
Audited by Gen Agent Trust Hub on Jun 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides static theme definitions in markdown files. No executable code (Python, JavaScript, or shell scripts) is included in the package.
- [PROMPT_INJECTION]: The skill includes instructions to generate custom themes based on user input. This creates an indirect prompt injection surface where the agent processes untrusted data to create new theme definitions. However, the scope is restricted to design elements (colors and fonts), and no malicious intent or bypass patterns were found in the skill's instructions.
Audit Metadata