syncfusion-aspnetcore-sparkline

Pass

Audited by Gen Agent Trust Hub on Sep 22, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The documentation references official Syncfusion NuGet packages (Syncfusion.EJ2.AspNet.Core) and the vendor's official CDN for JavaScript libraries (https://cdn.syncfusion.com/ej2/25.1.35/dist/ej2.min.js). These are standard resources for implementing the UI component.
  • [INDIRECT_PROMPT_INJECTION]: The Sparkline component described in the skill has an ingestion surface for external data through the dataSource property and supports HTML in tooltip templates.
  • Ingestion points: dataSource property defined in SKILL.md and references/data-features.md.
  • Boundary markers: None identified.
  • Capability inventory: No direct execution or network capabilities are defined within the skill instructions.
  • Sanitization: The component supports HTML in tooltip templates as documented in references/user-interaction.md, representing a standard visualization attack surface (e.g., XSS) for the target application.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 22, 2026, 02:08 PM
Security Audit — agent-trust-hub — syncfusion-aspnetcore-sparkline