syncfusion-react-rich-text-editor

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references several legitimate NPM packages from the vendor Syncfusion (@syncfusion/ej2-react-richtexteditor, @syncfusion/ej2-tailwind3-theme, @syncfusion/ej2-react-dropdowns, @syncfusion/ej2-inputs, @syncfusion/ej2-base) and well-known utility libraries (marked, codemirror). These are standard dependencies for the described functionality and originate from a trusted vendor context.\n- [INDIRECT_PROMPT_INJECTION]: As a rich text editing component, the skill naturally creates a surface for processing untrusted data. However, the documentation emphasizes security best practices to mitigate risks.\n
  • Ingestion points: Data enters the agent's context through the editor's value property, paste operations, and media uploads, as documented in references/editor-value.md and references/paste-clipboard.md.\n
  • Boundary markers: The skill highlights the enableHtmlSanitizer property, which is enabled by default to strip dangerous tags like script and iframe.\n
  • Capability inventory: The agent can programmatically get/set HTML content and trigger network requests to user-defined backend endpoints for processing media or AI responses.\n
  • Sanitization: The skill provides specific instructions for XSS prevention in references/validation-security.md and recommends server-side validation for all processed content as a secondary defense.\n- [DATA_EXFILTRATION]: The skill includes examples of sending content to backend APIs for AI processing and image uploads. These utilize relative paths or placeholder URLs intended for application-specific implementation and do not point to suspicious third-party domains.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 04:20 AM
Security Audit — agent-trust-hub — syncfusion-react-rich-text-editor