design-tokens
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The
reference/migration.mdfile contains several shell commands designed to audit a codebase for hardcoded design values. These commands utilize standard tools likegrep,sort, anduniqto identify hex colors, pixel values, and CSS variables. These are standard development utility commands and do not pose a security risk as they are scoped to design-related patterns. - [INDIRECT_PROMPT_INJECTION]: The skill includes an audit phase that ingests content from the project's
srcdirectory, creating a potential surface for indirect prompt injection if those files contain malicious instructions. - Ingestion points:
reference/migration.md(Bash commands auditing thesrc/directory for colors and dimensions). - Boundary markers: Absent; the instructions do not specify delimiters for the data returned by the audit commands.
- Capability inventory:
SKILL.mddefinesBash,Write, andGrepas allowed tools. - Sanitization: Implicit; the search patterns are restricted to specific design-related formats (hex, px, rgba), which naturally filters the ingested data to specific literals.
- [SAFE]: The skill follows security best practices by recommending explicit mapping tables for migrations rather than silent global replaces, and by specifying clear naming grammars that separate primitive values from semantic roles. The use of
BashandWritetools is consistent with its stated purpose of auditing code and exporting design system artifacts.
Audit Metadata