tailwind-css
Pass
Audited by Gen Agent Trust Hub on Oct 9, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to run repository-specific build checks, Tailwind build processes, and ESLint commands to verify styling changes and maintain code quality.
- [EXTERNAL_DOWNLOADS]: The skill references several third-party libraries and their documentation, including
tailwind-variants,eslint-plugin-better-tailwindcss, andtw-animate-css(hosted on GitHub). These are standard references for styling and linting workflows. - [INDIRECT_PROMPT_INJECTION]: The agent is instructed to read local source files (UI components, CSS entrypoints, and configuration) to maintain consistency. While these files are external inputs, the skill's instructions focus on extracting style tokens and applying CSS rules, which significantly limits the impact of potential injection within those files.
Audit Metadata