hand-gesture-recognition

Pass

Audited by Gen Agent Trust Hub on Sep 19, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill fetches MediaPipe model assets and WebAssembly binaries from the jsDelivr CDN (https://cdn.jsdelivr.net/npm/@mediapipe/hands/). This is a well-known and standard practice for loading Google MediaPipe assets in web applications.
  • [SAFE]: No evidence of prompt injection, data exfiltration, or malicious command execution was found. The instructions strictly govern the agent's persona and the use of provided reference materials.
  • [SAFE]: The provided code examples focus on client-side browser processing of camera data for landmark detection and gesture classification. There is no handling of sensitive user data or unauthorized file system access.
  • [SAFE]: The skill includes proactive security and reliability advice, such as handling camera permissions, implementing confidence thresholds, and providing fallback input methods for accessibility.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 19, 2026, 02:46 PM
Security Audit — agent-trust-hub — hand-gesture-recognition