syncfusion-javascript-chat-ui
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The Chat UI component processes untrusted data from chat participants, establishing a surface for indirect prompt injection.
- Ingestion points: The
messagescollection, along withaddMessageandupdateMessagemethods, ingest user-supplied text and metadata (SKILL.md, references/messages.md). - Boundary markers: No specific delimiters or boundary markers for untrusted data were identified in the instructional content.
- Capability inventory: The component is capable of performing network operations through attachment upload settings (
saveUrl) and fetching message history via API endpoints (references/file-attachments.md, references/load-on-demand.md). - Sanitization: The skill provides proactive remediation guidance in references/templates.md, demonstrating how to use HTML escaping within templates to sanitize user input and prevent XSS vulnerabilities.
Audit Metadata