syncfusion-react-sparkline

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSNO_CODE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references the installation of the @syncfusion/ej2-react-charts package from the npm registry. This is a legitimate dependency provided by the author (Syncfusion) to enable the component's functionality.
  • [INDIRECT_PROMPT_INJECTION]: The component logic relies on a dataSource property and HTML tooltip templates. These features allow the ingestion and display of external data. While this creates a data ingestion surface, the component is restricted to visualization within a UI context and does not provide an execution path for malicious instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 04:20 AM
Security Audit — agent-trust-hub — syncfusion-react-sparkline