design-md
Pass
Audited by Gen Agent Trust Hub on Jul 9, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill retrieves HTML source code and screenshots from URLs provided by the Stitch MCP server. These assets originate from the Google Stitch service (stitch.withgoogle.com), which is a well-known technology service.
- [PROMPT_INJECTION]: The skill presents an indirect prompt injection surface due to its core functionality. 1. Ingestion points: External HTML source code and screen metadata retrieved from projects. 2. Boundary markers: Not specified in the instructions. 3. Capability inventory: MCP tools for metadata retrieval and web_fetch for asset downloading. 4. Sanitization: No explicit validation or filtering of the retrieved content is mentioned. This risk is considered low and inherent to the skill's purpose of code and design analysis.
Audit Metadata