enhance-web-forms

Pass

Audited by Gen Agent Trust Hub on Aug 25, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides structured guidance for refactoring web forms. All bash commands are limited to searching the local codebase (rg, grep, cat) or running local verification tools (playwright-cli). No evidence of credential theft, malicious exfiltration, or unauthorized command execution was found.
  • [INDIRECT_PROMPT_INJECTION]: The skill has a surface for indirect prompt injection as it processes repository content and external research data.
  • Ingestion points: Local source files (.tsx, .jsx, .vue, .svelte), package.json, and external research data retrieved via Firecrawl.
  • Boundary markers: Absent; instructions do not specify delimiters for data processed during the research or inventory phases.
  • Capability inventory: Uses standard search utilities (rg, grep) and browser automation for verification (playwright-cli).
  • Sanitization: Absent; the skill assumes the integrity of the codebase and external documentation used for research.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 25, 2026, 05:56 AM
Security Audit — agent-trust-hub — enhance-web-forms