syncfusion-react-kanban

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill serves as an implementation guide for a well-known UI component library. All instructions and code samples align with standard software development practices for data visualization.
  • [EXTERNAL_DOWNLOADS]: The skill requires the installation of official Syncfusion npm packages and provides examples of binding data to Syncfusion's public demonstration services.
  • Dependency: @syncfusion/ej2-react-kanban and associated UI components.
  • Remote Endpoint: https://services.syncfusion.com/react/production/api/Kanban is used for demonstration data binding.
  • [INDIRECT_PROMPT_INJECTION]: The Kanban component is designed to ingest and render data from external sources (APIs or local arrays).
  • Ingestion Points: The dataSource property in KanbanComponent (found in SKILL.md and multiple reference files) allows the component to process external data.
  • Capability Inventory: The skill demonstrates using DataManager and fetch for network operations, and custom card templates for rendering data.
  • Sanitization: Rendering is handled via React/JSX which provides default escaping; however, custom templates could render unsanitized content if not implemented carefully. The skill does not introduce any specific vulnerabilities or bypasses.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 04:19 AM
Security Audit — agent-trust-hub — syncfusion-react-kanban