syncfusion-angular-file-manager
Pass
Audited by Gen Agent Trust Hub on Mar 31, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection as it displays and processes filenames and folder structures from external sources. * Ingestion points: The component ingests data via the
ajaxSettingsendpoints or thefileSystemDataarray as described in SKILL.md. * Boundary markers: The skill documents theenableHtmlSanitizerproperty and recommends keeping it enabled for security. * Capability inventory: The component supports comprehensive file operations including create, delete, rename, move, copy, upload, and download. * Sanitization: The component includes anenableHtmlSanitizerproperty which is enabled by default to mitigate XSS risks during rendering. - [SAFE]: The skill is a legitimate technical resource authored by Syncfusion Inc. for their Angular File Manager component.
- [SAFE]: All external URLs, including demo endpoints on Azure and GitHub repositories within the SyncfusionExamples organization, are official vendor-managed resources.
- [SAFE]: No malicious patterns such as unauthorized data exfiltration, obfuscation, or arbitrary command execution were detected in the instructions or scripts.
Audit Metadata