ui-motion
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill uses a static lookup table to map natural language descriptors like 'bouncy' or 'snappy' to specific framer-motion configuration seeds (Spring, Silk, Snap, Float, Pulse).
- [SAFE]: No obfuscated content, hardcoded credentials, persistence mechanisms, or unauthorized network requests were identified in the instructions or metadata.
- [INDIRECT_PROMPT_INJECTION]: The skill has an attack surface because it reads and modifies user-provided JSX/TSX files. This is a standard requirement for code-editing skills and is considered safe in this context. 1. Ingestion points: Target React component files provided by the user. 2. Boundary markers: Absent. 3. Capability inventory: File system read/write via agent tools. 4. Sanitization: Absent.
Audit Metadata