gsap-animation-engineer

Pass

Audited by Gen Agent Trust Hub on Jun 19, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill provides legitimate and high-quality technical instructions for implementing GSAP (GreenSock) animations. It correctly emphasizes lifecycle management (killing timelines) to prevent memory leaks and includes accessibility considerations like 'prefers-reduced-motion'.
  • [PROMPT_INJECTION]: The skill presents an attack surface for indirect prompt injection.
  • Ingestion points: Untrusted data is ingested via the input and context fields in the skill's YAML frontmatter.
  • Boundary markers: There are no defined delimiters or instructions to treat external data as untrusted or separate from the core logic.
  • Capability inventory: The skill uses powerful system tools including Bash, Write, and Edit, which could be leveraged if the agent is manipulated by input data.
  • Sanitization: No validation or sanitization of input strings is performed before they are used in the context of file manipulation or command execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 19, 2026, 02:35 AM
Security Audit — agent-trust-hub — gsap-animation-engineer