syncfusion-react-kanban
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill serves as an implementation guide for a well-known UI component library. All instructions and code samples align with standard software development practices for data visualization.
- [EXTERNAL_DOWNLOADS]: The skill requires the installation of official Syncfusion npm packages and provides examples of binding data to Syncfusion's public demonstration services.
- Dependency:
@syncfusion/ej2-react-kanbanand associated UI components. - Remote Endpoint:
https://services.syncfusion.com/react/production/api/Kanbanis used for demonstration data binding. - [INDIRECT_PROMPT_INJECTION]: The Kanban component is designed to ingest and render data from external sources (APIs or local arrays).
- Ingestion Points: The
dataSourceproperty inKanbanComponent(found inSKILL.mdand multiple reference files) allows the component to process external data. - Capability Inventory: The skill demonstrates using
DataManagerandfetchfor network operations, and custom card templates for rendering data. - Sanitization: Rendering is handled via React/JSX which provides default escaping; however, custom templates could render unsanitized content if not implemented carefully. The skill does not introduce any specific vulnerabilities or bypasses.
Audit Metadata