diagram
Pass
Audited by Gen Agent Trust Hub on Sep 22, 2026
Risk Level: SAFEDYNAMIC_EXECUTIONCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [DYNAMIC_EXECUTION]: The skill instructs the agent to generate HTML files for complex visual concepts, which involves dynamic creation of local artifact files.\n- [COMMAND_EXECUTION]: The instructions direct the agent to use platform-specific commands such as 'start', 'open', or 'xdg-open' to display generated HTML artifacts to the user.\n- [INDIRECT_PROMPT_INJECTION]: The skill has a surface for processing data from the project environment into visual diagrams.\n
- Ingestion points: Project file structure and user prose described in SKILL.md.\n
- Boundary markers: The instructions do not define specific delimiters for separating user-provided data from visual templates.\n
- Capability inventory: Includes the ability to write to the file system and execute shell commands to open files.\n
- Sanitization: No explicit instructions for sanitizing or escaping data extracted from the codebase before rendering it in diagrams or HTML.
Audit Metadata