syncfusion-javascript-accordion
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: Detailed review of the skill's instructions, examples, and metadata indicates no malicious behavior, obfuscation, or unauthorized access to system resources. The content consists entirely of legitimate API documentation and best practices for the Syncfusion Accordion component.
- [INDIRECT_PROMPT_INJECTION]: The skill describes methods for binding the Accordion component to external data sources (e.g., via
dataSourceandfetchcalls inreferences/data-loading.md). This creates a surface where external data is rendered in the user interface. The component explicitly includes anenableHtmlSanitizerproperty, enabled by default, to mitigate risks associated with untrusted data ingestion. - [EXTERNAL_DOWNLOADS]: The documentation includes standard instructions for installing official Syncfusion libraries from the NPM registry (
@syncfusion/ej2-navigations) and referencing well-known resources such as Font Awesome icons. These are standard dependencies for the component's intended use and do not originate from untrusted sources.
Audit Metadata