helio-design-analysis
Pass
Audited by Gen Agent Trust Hub on Jul 3, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists of informational markdown files providing instructions and reference data for a UX design analysis tool. No executable scripts, command-line operations, or network exfiltration patterns were detected.
- [DATA_EXPOSURE]: The reference material mentions the use of API tokens and shareable ULID links for accessing reports. These are described as standard features of the service; the skill does not contain hardcoded credentials or expose sensitive data.
- [PROMPT_INJECTION]: The described service ingests untrusted design assets (images and URLs) for AI evaluation. While this creates a surface for indirect prompt injection, it is the fundamental purpose of the service, and the skill itself does not contain instructions that would enable or facilitate an attack.
Audit Metadata