helio-design-analysis

Pass

Audited by Gen Agent Trust Hub on Jul 3, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of informational markdown files providing instructions and reference data for a UX design analysis tool. No executable scripts, command-line operations, or network exfiltration patterns were detected.
  • [DATA_EXPOSURE]: The reference material mentions the use of API tokens and shareable ULID links for accessing reports. These are described as standard features of the service; the skill does not contain hardcoded credentials or expose sensitive data.
  • [PROMPT_INJECTION]: The described service ingests untrusted design assets (images and URLs) for AI evaluation. While this creates a surface for indirect prompt injection, it is the fundamental purpose of the service, and the skill itself does not contain instructions that would enable or facilitate an attack.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 3, 2026, 11:58 PM
Security Audit — agent-trust-hub — helio-design-analysis