visual-testing
Pass
Audited by Gen Agent Trust Hub on May 11, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides legitimate instructions for visual regression testing and follows industry best practices for automation.
- [EXTERNAL_DOWNLOADS]: All external tools and services mentioned, including Playwright, Chromatic, Percy, and Argos CI, are well-known services or provided by trusted organizations like Microsoft.
- [CREDENTIALS_UNSAFE]: The skill correctly demonstrates the use of environment variables and secrets for sensitive data, such as the
CHROMATIC_PROJECT_TOKENin GitHub Actions. - [INDIRECT_PROMPT_INJECTION]: While the skill involves the agent interacting with and capturing data from web pages (a potential injection surface), it incorporates security-relevant best practices such as masking dynamic regions and stubbing external API calls to maintain environment control.
Audit Metadata