landing-page-studio
Pass
Audited by Gen Agent Trust Hub on Mar 26, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill utilizes well-known technology services and content delivery networks (CDNs) such as Cloudflare, Google Fonts, and Iconify to load standard libraries like GSAP, Anime.js, and Three.js. These references are documented neutrally as they are industry-standard resources.
- [SAFE]: Input data processing is handled by local Python utility scripts (scripts/validate_intake.py and scripts/build_animation_manifest.py) which perform validation and normalization without the use of dangerous dynamic execution functions.
- [SAFE]: The skill displays an indirect prompt injection surface as it interpolates user-provided text into code templates; however, this is a core functional requirement of a generation tool and is implemented within standard operational bounds without evidence of exploitable behavior.
- [SAFE]: No hardcoded credentials, sensitive file access, or unauthorized network operations were identified across the 20 files analyzed.
Audit Metadata