skills/syncfusion/spreadsheet-editor-sdk-skills/syncfusion-angular-spreadsheet-editor/Gen Agent Trust Hub
syncfusion-angular-spreadsheet-editor
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill provides patterns for binding data from external sources such as JSON files, CSV files, and remote APIs (via
DataManagerandHttpClient). - Ingestion points: Data ingestion is handled in
references/data-binding.mdandreferences/import-export.mdusing remote URLs and local file parsing. - Boundary markers: The skill does not implement delimiters for the data itself, as it focuses on component integration rather than prompt construction, but it includes explicit code comments advising developers to validate URLs against an allowlist.
- Capability inventory: The generated code includes capabilities for network requests (
fetch,HttpClient,DataManager) and file exports (Excel/CSV/PDF). - Sanitization: The skill provides proactive security warnings in
references/hyperlink.mdregarding the need to sanitize user-provided URLs and inreferences/data-binding.mdregarding domain validation.
Audit Metadata