comment-triage
Pass
Audited by Gen Agent Trust Hub on Aug 19, 2026
Risk Level: SAFE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted input from Figma comments, which is a standard surface for indirect prompt injection.
- Ingestion points: Reads all open comments and associated layer data from the Figma file.
- Boundary markers: Absent; there are no instructions to treat the comment text strictly as data or to ignore embedded instructions.
- Capability inventory: Drafts comment replies and performs scoped, reversible edits to the design file.
- Sanitization: Absent; comment content is analyzed as-is for categorization.
Audit Metadata