wireframe

Pass

Audited by Gen Agent Trust Hub on Feb 22, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION] (LOW): The skill is susceptible to indirect prompt injection from untrusted data sources. * Ingestion points: The agent reads and interprets the contents of docs/PRD.md and docs/research/VERDICT.md. * Boundary markers: Absent; there are no explicit instructions for the agent to distinguish between its primary directives and potentially malicious commands embedded within the external documentation. * Capability inventory: The skill has the capability to write multiple files to the filesystem, specifically in the wireframes/ and docs/ directories. * Sanitization: Absent; the agent directly uses information from the input files to generate file names and screen content without any validation or escaping mechanism.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 22, 2026, 12:44 AM