skills/lennney/skills/ui-designer/Gen Agent Trust Hub

ui-designer

Pass

Audited by Gen Agent Trust Hub on Jun 24, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes shell commands using find and grep to determine if the current directory contains a React project. This is a benign environment check used to guide the user's setup.
  • [EXTERNAL_DOWNLOADS]: The workflow suggests installing standard, well-known industry packages such as tailwindcss, postcss, autoprefixer, and lucide-react. These are legitimate dependencies for modern web development.
  • [PROMPT_INJECTION]: The skill ingests user-provided text files and images to interpolate into prompt templates. While this creates a surface for indirect prompt injection, the risk is mitigated as the skill's capabilities are limited to local UI generation and environment discovery without sensitive data access or exfiltration.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 24, 2026, 02:27 PM
Security Audit — agent-trust-hub — ui-designer