syncfusion-aspnetcore-kanban
Pass
Audited by Gen Agent Trust Hub on Sep 22, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references JavaScript and CSS assets from the official Syncfusion CDN to enable component features. These resources originate from the vendor's own infrastructure and are documented neutrally.
- [INDIRECT_PROMPT_INJECTION]: The skill describes how to process untrusted data from remote API endpoints through various data adaptors. * Ingestion points: Remote data binding via the e-data-manager component as detailed in references/data-binding.md. * Boundary markers: The skill encourages the use of structured data adaptors (OData, WebAPI) which establish clear format boundaries. * Capability inventory: The component renders HTML-based cards and performs server-side CRUD operations via configured URLs. * Sanitization: Documentation in references/properties.md specifically highlights the enableHtmlSanitizer property (enabled by default) which mitigates cross-site scripting risks in card data.
Audit Metadata