syncfusion-react-heatmap

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill describes a component that ingests data for visualization. Ingestion points: The dataSource property accepts arrays or JSON objects as seen in SKILL.md and references/data-binding.md. Boundary markers: The component provides an enableHtmlSanitizer property to handle untrusted content, as documented in references/api-reference.md. Capability inventory: The component performs UI rendering and handles interactive events like cellClick and cellRender as described in references/interaction-and-selection.md. Sanitization: The library includes built-in HTML sanitization capabilities to mitigate risks from untrusted data.
  • [EXTERNAL_DOWNLOADS]: The documentation instructs the user to install legitimate software packages (e.g., @syncfusion/ej2-react-heatmap) from the official NPM registry, which is standard practice for this library (evidence in references/getting-started.md).
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 04:19 AM
Security Audit — agent-trust-hub — syncfusion-react-heatmap