flutter-duit-bdui
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONDYNAMIC_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process UI layouts and actions defined in JSON format received from remote servers or local files. This creates an attack surface where a malicious backend could provide instructions aimed at influencing the agent or the application's behavior.
- Ingestion points: Layout data is ingested via
XDriver.remoteandXDriver.staticas documented inSKILL.mdandreferences/public_api.md. - Boundary markers: The instructions do not define specific delimiters or "ignore embedded instructions" warnings for the processed JSON data.
- Capability inventory: The framework utilizes network operations via
HttpTransportManager, native module interaction viaNativeModuleCapabilityDelegate, and scripting viaScriptingCapabilityDelegate(as noted inreferences/capabilities.md). - Sanitization: No explicit sanitization or validation logic for the data content is provided in the instructions.
- [DYNAMIC_EXECUTION]: The skill documentation mentions the
ScriptingCapabilityDelegateinreferences/capabilities.md, which is intended for "Embedded script execution". This feature allows the framework to execute logic provided within the layout data, which constitutes dynamic execution at runtime.
Audit Metadata