webui-reference
Pass
Audited by Gen Agent Trust Hub on Sep 21, 2026
Risk Level: SAFENO_CODE
Full Analysis
- Framework Reference Content: The skill acts as a technical guide for an AI agent, providing constraints and examples for generating HTML, CSS, and TypeScript within a specific framework. It does not contain executable logic or malicious instructions.
- Security Best Practices: The documentation explicitly warns against insecure practices. It advises users never to store credentials or private tokens in render state and provides clear distinctions between escaped and unescaped data bindings to mitigate XSS risks.
- Vendor Resource Alignment: The skill references external packages and repositories (e.g.,
@microsoft/webui-framework) that are consistent with the authored vendor's ecosystem. - No Malicious Patterns: Analysis of the documentation found no evidence of prompt injection, data exfiltration, or obfuscation. All provided code snippets are instructional and serve the skill's primary purpose.
Audit Metadata