frontend-design
Pass
Audited by Gen Agent Trust Hub on Sep 22, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied requirements to generate production-grade code, creating a surface for indirect prompt injection.
- Ingestion points: Frontend requirements provided by the user (as described in
SKILL.md). - Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the guidelines.
- Capability inventory: The skill generates functional code (HTML, CSS, Javascript, React, Vue) which is displayed to the user.
- Sanitization: No sanitization or validation of user-provided content is mentioned before interpolation into the design process.
Audit Metadata