design-content-direction

Pass

Audited by Gen Agent Trust Hub on Aug 26, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill reads from references/design-best-practices.md, references/design-inspiration-catalog.md, and DESIGN.md to synthesize design patterns, which creates a surface for indirect prompt injection if these files are externally controlled.
  • Ingestion points: references/design-best-practices.md, references/design-inspiration-catalog.md, and DESIGN.md.
  • Boundary markers: Absent; no specific markers are instructed to the agent to distinguish reference content from core instructions.
  • Capability inventory: File read/write operations within the local project directory; no network or shell execution capabilities identified.
  • Sanitization: Absent; no filtering or validation of ingested markdown content is specified.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 26, 2026, 06:47 AM
Security Audit — agent-trust-hub — design-content-direction