enhance-web-forms
Pass
Audited by Gen Agent Trust Hub on Aug 25, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides structured guidance for refactoring web forms. All bash commands are limited to searching the local codebase (rg, grep, cat) or running local verification tools (playwright-cli). No evidence of credential theft, malicious exfiltration, or unauthorized command execution was found.
- [INDIRECT_PROMPT_INJECTION]: The skill has a surface for indirect prompt injection as it processes repository content and external research data.
- Ingestion points: Local source files (.tsx, .jsx, .vue, .svelte), package.json, and external research data retrieved via Firecrawl.
- Boundary markers: Absent; instructions do not specify delimiters for data processed during the research or inventory phases.
- Capability inventory: Uses standard search utilities (rg, grep) and browser automation for verification (playwright-cli).
- Sanitization: Absent; the skill assumes the integrity of the codebase and external documentation used for research.
Audit Metadata