web-design-guidelines
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- External Guidelines Download: The skill retrieves design rules from an external repository to perform compliance checks. This is part of the intended functionality to ensure up-to-date validation rules.
- Indirect Prompt Injection Surface: The skill dynamically processes rules and format instructions from the fetched file. While this represents a trust chain dependency on the remote repository, the resource originates from a trusted organization context.
- Ingestion points: Remote URL reference in SKILL.md
- Boundary markers: None present
- Capability inventory: Limited to file reading and text formatting
- Sanitization: None applied to the fetched ruleset
Audit Metadata