refactoring-ui

Pass

Audited by Gen Agent Trust Hub on Jun 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is purely instructional, providing design principles and best practices for web user interfaces. It does not execute arbitrary code, access sensitive files, or perform unauthorized network operations.- [SAFE]: External links provided in the 'Further Reading' section are legitimate resources for design education. While they include affiliate tracking parameters linked to the author's handle ('wondelai00-20'), these are standard for resource attribution and do not pose a security risk to the user or the environment.- [SAFE]: Analysis for indirect prompt injection surface shows that while the skill processes untrusted user data, it is used for design auditing and does not have high-risk capabilities that could be exploited.
  • Ingestion points: User-provided UI descriptions and frontend code snippets (HTML/CSS) are processed as described in 'SKILL.md'.
  • Boundary markers: No specific delimiters or instructions are provided to the agent to distinguish between user data and instructions.
  • Capability inventory: The skill's primary capabilities are providing design advice and generating styling code (CSS).
  • Sanitization: No input validation or sanitization is implemented for user-provided data.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 21, 2026, 08:10 PM
Security Audit — agent-trust-hub — refactoring-ui