react
Pass
Audited by Gen Agent Trust Hub on Sep 7, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill is purely informational and focused on architectural design. It does not contain any executable scripts, network requests, or file system operations.
- [INDIRECT_PROMPT_INJECTION]: The skill includes ingestion points for external data (React briefs and component trees). However, the skill lacks the necessary capability inventory (no subprocess calls, no file writes, no network operations) to execute malicious instructions contained in that data, and boundary markers are implicit in the design-only nature of the task.
Audit Metadata