syncfusion-javascript-chat-ui

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The Chat UI component processes untrusted data from chat participants, establishing a surface for indirect prompt injection.
  • Ingestion points: The messages collection, along with addMessage and updateMessage methods, ingest user-supplied text and metadata (SKILL.md, references/messages.md).
  • Boundary markers: No specific delimiters or boundary markers for untrusted data were identified in the instructional content.
  • Capability inventory: The component is capable of performing network operations through attachment upload settings (saveUrl) and fetching message history via API endpoints (references/file-attachments.md, references/load-on-demand.md).
  • Sanitization: The skill provides proactive remediation guidance in references/templates.md, demonstrating how to use HTML escaping within templates to sanitize user input and prevent XSS vulnerabilities.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 10:55 PM
Security Audit — agent-trust-hub — syncfusion-javascript-chat-ui