mobile-ux-optimizer
Pass
Audited by Gen Agent Trust Hub on Mar 5, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides legitimate web development guidelines and code snippets for mobile optimization.
- [COMMAND_EXECUTION]: Mentions using
localtunnelorngrokto expose local servers for testing purposes. These are well-known developer tools and represent standard practice for the skill's stated purpose. - [PROMPT_INJECTION]: The React components provided (Drawer, BottomNav) serve as a potential surface for indirect injection if an agent populates them with untrusted data.
- Ingestion points:
childrenprop inDrawercomponent;labelfield inBottomNavitems. - Boundary markers: Not present in the UI snippets.
- Capability inventory: Bash, Write, and Edit tools are enabled via metadata.
- Sanitization: The snippets focus on design/UX and do not explicitly handle input sanitization.
Audit Metadata