tailwindcss
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill provides legitimate coding standards for Tailwind CSS v4 and references official documentation and well-known community libraries such as tailwind-merge.
- [INDIRECT_PROMPT_INJECTION]: The skill interacts with external repository content, which presents a surface for indirect prompt injection.
- Ingestion points: Source code files and styling configurations are ingested via
Read,Grep, andGlobtools. - Boundary markers: The instructions lack specific delimiters or instructions to ignore potential commands embedded within ingested code.
- Capability inventory: The skill is limited to
Read,Grep, andGlobtools, minimizing the risk of unauthorized execution or data modification directly from the skill context. - Sanitization: No validation or sanitization routines are specified for the content processed from the project files.
Audit Metadata