kmp-compose-design-system

Pass

Audited by Gen Agent Trust Hub on Sep 28, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides automated utility scripts for design system maintenance.
  • derive_component_prefix.py: Deterministically derives component prefixes from local project metadata files such as settings.gradle.kts and build.gradle.kts without external network activity.
  • generate_palette.py: Generates color tokens using local calculations and optional image processing via the standard 'Pillow' library.
  • scaffold_preview_coverage.py: Automatically generates Compose preview and test stubs based on existing UI code structure.
  • scan_design_violations.py: Performs local static analysis to identify hardcoded visual literals and layout inconsistencies.
  • update_design_system.py: Compares project files against local reference implementations to suggest updates.
  • [SAFE]: The inclusion of a custom Detekt rule set (detekt-rules/) demonstrates a secure approach to design system enforcement, utilizing standard PSI-based static analysis within the project's build process.
  • [SAFE]: The skill's instructions and reference files follow standard developer workflows, and external documentation links point to official platform resources (Google) or author-owned design system extensions.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 28, 2026, 10:23 AM
Security Audit — agent-trust-hub — kmp-compose-design-system