baseline-ui
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is purely instructional, providing a set of CSS and React best practices for UI development. It does not perform network requests, file system modifications (beyond suggested edits), or execute external code.
- [INDIRECT_PROMPT_INJECTION]: The skill provides a command to review external files (
/baseline-ui <file>). While reading untrusted data is a potential attack surface for indirect prompt injection, the skill lacks high-privilege capabilities (like code execution or data exfiltration) that could be abused by a malicious payload inside a reviewed file.
Audit Metadata