email-and-newsletter-design

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of instructional content and code snippets for HTML email design. It does not include executable scripts, shell commands, or external dependencies.
  • [OBFUSCATION]: The skill includes the use of the zero-width non-joiner (ZWNJ) character (‌) within a code example for email preheaders. This is a standard and legitimate technique in email development used to manage how inbox preview text is displayed and does not constitute a security threat.
  • [INDIRECT_PROMPT_INJECTION]: The skill defines a process for transforming user-supplied briefs and copy into email layouts. While this involves processing untrusted data, the instructions are strictly focused on layout and CSS limitations, providing no mechanisms for bypassing security guardrails or executing unauthorized actions based on the input. 1. Ingestion points: Approved brief and copy (SKILL.md). 2. Boundary markers: Absent. 3. Capability inventory: File system read/edit. 4. Sanitization: Absent.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 03:57 AM
Security Audit — agent-trust-hub — email-and-newsletter-design