simple-words-design

Pass

Audited by Gen Agent Trust Hub on Jul 8, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides design documentation, SVG assets, and React components intended for prototyping and designing a specific Chrome extension. No malicious logic or exfiltration patterns were detected.
  • [EXTERNAL_DOWNLOADS]: The skill references and downloads legitimate resources from well-known services. This includes loading the React framework and Babel compiler from "unpkg.com" for the UI kit's demo ("ui_kits/extension/index.html"), and importing typography from "fonts.googleapis.com" within the CSS tokens ("colors_and_type.css").
  • [CREDENTIALS_UNSAFE]: The prototype components for the extension's options page ("ui_kits/extension/OptionsPage.jsx") include input fields for API keys and access tokens. However, these are standard UI elements for the application's functionality, and no hardcoded credentials or secrets are present in the source code.
  • [PROMPT_INJECTION]: No malicious prompt injection attempts were found. The skill includes a default system prompt for the extension's model that explicitly follows security best practices by instructing the AI to treat input context as untrusted.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 8, 2026, 09:15 PM
Security Audit — agent-trust-hub — simple-words-design