heuristic-evaluation

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: No malicious code, obfuscation, or exfiltration patterns detected. The skill uses standard Figma design context to provide usability feedback.
  • [INDIRECT_PROMPT_INJECTION]: The skill possesses an attack surface for indirect prompt injection as it processes untrusted design-file data. 1. Ingestion points: frames, layers, components, variables, styles, and comments as defined in SKILL.md. 2. Boundary markers: Absent; no specific delimiters or warnings to ignore embedded instructions are present. 3. Capability inventory: Ability to perform scoped, reversible edits to Figma design files. 4. Sanitization: Absent; no validation or filtering of design data is specified before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 06:31 AM
Security Audit — agent-trust-hub — heuristic-evaluation