syncfusion-vue-barcode

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill implementation strictly follows documented component usage from a trusted vendor. No patterns of credential theft, persistence, or privilege escalation are present.
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the @syncfusion/ej2-vue-barcode-generator package via npm or yarn in references/getting-started.md. This is a standard and expected dependency for a skill focused on Syncfusion components.
  • [INDIRECT_PROMPT_INJECTION]: The skill documentation includes examples where user input is bound to barcode values via v-model. 1. Ingestion points: v-model bindings for barcodeValue and shareUrl in SKILL.md and references/common-use-cases.md. 2. Boundary markers: None. 3. Capability inventory: Triggers browser downloads via exportImage, initiates printing via window.print, and sends data to local API endpoints via fetch('/api/barcodes') as seen in references/export-functionality.md. 4. Sanitization: Character set validation for Code39 is suggested in references/barcode-generator.md, but general data sanitization is minimal as encoding data into barcodes is the primary intended function.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 10:25 AM
Security Audit — agent-trust-hub — syncfusion-vue-barcode