syncfusion-react-charts

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs users to install official packages from the Syncfusion vendor via NPM, specifically @syncfusion/ej2-react-charts and @syncfusion/ej2-base. It also references official documentation and GitHub repositories owned by Syncfusion Inc.
  • [INDIRECT_PROMPT_INJECTION]:
  • Ingestion points: The skill facilitates binding data from local and remote sources through the SeriesDirective and DataManager components as described in references/series-and-data.md.
  • Boundary markers: The library treats data points as structured objects separate from visual rendering logic.
  • Capability inventory: The skill's functionality is restricted to UI rendering and data visualization within a React environment; it lacks capabilities for command execution or direct filesystem access.
  • Sanitization: The documentation explicitly identifies the enableHtmlSanitizer property to mitigate potential XSS or injection risks when using HTML templates for chart tooltips or labels.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 07:46 AM
Security Audit — agent-trust-hub — syncfusion-react-charts