ink
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious behavior or security risks were identified. The content is purely instructional documentation for the @json-render/ink library.
- [PROMPT_INJECTION]: The skill documents a data-driven UI rendering system. While this represents a surface for indirect prompt injection, it is the intended primary purpose of the library.
- Ingestion points: JSON specifications provided to the Renderer component in SKILL.md.
- Boundary markers: None described in documentation.
- Capability inventory: Data binding, conditional visibility, and state management actions.
- Sanitization: Not mentioned in the implementation guide.
Audit Metadata