imagegen-frontend-web
Pass
Audited by Gen Agent Trust Hub on Sep 19, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill contains no executable scripts, shell commands, or external code dependencies. It is composed entirely of natural language instructions for prompt engineering and design direction.
- [PROMPT_INJECTION]: The skill uses strong imperative language such as 'HARD OUTPUT RULE' and 'This rule overrides any model default'. These are standard prompt engineering techniques used to ensure specific output formatting (generating individual images for website sections) and do not attempt to bypass safety guidelines or extract internal system prompts.
- [DATA_EXPOSURE]: There are no references to sensitive file paths, environment variables, or hardcoded credentials. The skill does not request or perform any data exfiltration.
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process user-supplied design briefs. It lacks specific delimiters for user input, but since the agent's actions are restricted to generating image prompts and descriptions without access to dangerous tools (file system, network, or execution), the vulnerability surface is minimal.
Audit Metadata