rails-application-ui-blocks
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The provided utility script
scripts/build_template_catalog.pyis used to index local HTML templates. It relies on standard Python libraries and restricts its operations to file system reads and writes within the repository scope. There is no evidence of network communication, obfuscation, or unauthorized data access. - [INDIRECT_PROMPT_INJECTION]: The skill uses a script to scan file paths in the
templates/application-uidirectory to generate a catalog. This creates a potential surface where maliciously named files (if added to the repository) could insert instructions into the catalog that might influence the agent's behavior. - Ingestion points:
scripts/build_template_catalog.pyscans the project directory for.htmlfiles. - Boundary markers: Absent; the results are stored in a standard JSON catalog.
- Capability inventory: The agent uses the catalog to propose UI modifications and refactoring steps.
- Sanitization: Filenames are normalized for ID creation, but no specific prompt-injection sanitization is performed on the resulting metadata strings.
Audit Metadata