apply-color-variables

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns or security risks were identified during the analysis of this skill. The instructions are purely functional and focused on Figma design system management.
  • [NO_CODE]: The skill consists entirely of natural language instructions and does not include any executable scripts, shell commands, or external dependencies.
  • [PROMPT_INJECTION]: The instructions do not attempt to bypass safety filters or override system-level agent behavior. The inclusion of 'Hard stop conditions' demonstrates a safety-first approach by requiring user input for ambiguous or risky operations.
  • [DATA_EXFILTRATION]: There are no network operations, API calls to non-standard domains, or attempts to access sensitive system files (such as SSH keys or credentials).
  • [OBFUSCATION]: The file was checked for hidden characters, Base64 encoding, and homoglyphs. No obfuscation techniques were detected.
  • [INDIRECT_PROMPT_INJECTION]: While the skill processes external data (Figma layers and properties), the scope is strictly limited to color-bearing properties. The skill does not execute instructions found within the design data and has no capabilities to perform dangerous operations like shell execution or network requests.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 06:31 AM
Security Audit — agent-trust-hub — apply-color-variables