rails-application-ui-blocks

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The provided utility script scripts/build_template_catalog.py is used to index local HTML templates. It relies on standard Python libraries and restricts its operations to file system reads and writes within the repository scope. There is no evidence of network communication, obfuscation, or unauthorized data access.
  • [INDIRECT_PROMPT_INJECTION]: The skill uses a script to scan file paths in the templates/application-ui directory to generate a catalog. This creates a potential surface where maliciously named files (if added to the repository) could insert instructions into the catalog that might influence the agent's behavior.
  • Ingestion points: scripts/build_template_catalog.py scans the project directory for .html files.
  • Boundary markers: Absent; the results are stored in a standard JSON catalog.
  • Capability inventory: The agent uses the catalog to propose UI modifications and refactoring steps.
  • Sanitization: Filenames are normalized for ID creation, but no specific prompt-injection sanitization is performed on the resulting metadata strings.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 10:48 AM
Security Audit — agent-trust-hub — rails-application-ui-blocks