zoom-reflow

Pass

Audited by Gen Agent Trust Hub on Jun 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill contains only educational materials, CSS/HTML/React examples, and testing procedures for accessibility compliance (WCAG 2.1).
  • [PROMPT_INJECTION]: The skill is designed to review rendered HTML and interactive components. While this processes untrusted data (Category 8: Indirect Prompt Injection), it lacks any dangerous capabilities such as file system writes, network operations, or subprocess execution that could be exploited. No boundary markers or sanitization are present, but the risk remains negligible due to the absence of exploitable capabilities.
  • [EXTERNAL_DOWNLOADS]: References external documentation from frontendchecklist.io. This is a well-known technical resource in the frontend development community and does not involve automated code execution or suspicious downloads.
  • [DATA_EXFILTRATION]: No evidence of sensitive file access, credential harvesting, or unauthorized network communication was found.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 20, 2026, 02:45 AM
Security Audit — agent-trust-hub — zoom-reflow