design-md

Pass

Audited by Gen Agent Trust Hub on Jul 9, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill retrieves HTML source code and screenshots from URLs provided by the Stitch MCP server. These assets originate from the Google Stitch service (stitch.withgoogle.com), which is a well-known technology service.
  • [PROMPT_INJECTION]: The skill presents an indirect prompt injection surface due to its core functionality. 1. Ingestion points: External HTML source code and screen metadata retrieved from projects. 2. Boundary markers: Not specified in the instructions. 3. Capability inventory: MCP tools for metadata retrieval and web_fetch for asset downloading. 4. Sanitization: No explicit validation or filtering of the retrieved content is mentioned. This risk is considered low and inherent to the skill's purpose of code and design analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 9, 2026, 07:07 AM
Security Audit — agent-trust-hub — design-md