skills/syncfusion/aspnetcore-ui-components-skills/syncfusion-aspnetcore-lineargauge/Gen Agent Trust Hub
syncfusion-aspnetcore-lineargauge
Pass
Audited by Gen Agent Trust Hub on Jul 7, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [SAFE]: The skill consists of documentation and code examples for the Syncfusion Linear Gauge component. All external references, such as script tags and images, point to official Syncfusion domains (cdn.syncfusion.com and ej2.syncfusion.com). These resources are consistent with the identified author and represent standard delivery of UI component assets.
- [PROMPT_INJECTION]: The documentation describes features that allow developers to render custom HTML content within gauge annotations and tooltip templates. This represents an attack surface for indirect prompt injection or cross-site scripting (XSS) if untrusted data is displayed. 1. Ingestion points: The 'Content' property in 'e-lineargauge-annotation' and the 'Template' property in 'e-lineargauge-tooltip'. 2. Boundary markers: No specific boundary markers or 'ignore' instructions are provided in the examples. 3. Capability inventory: No high-risk capabilities such as shell execution or sensitive file system access are requested by the skill. 4. Sanitization: The documentation does not explicitly detail built-in sanitization for these HTML properties, which is common for UI libraries but serves as an important security boundary for the implementing application.
Audit Metadata