hexagone-frontend
Pass
Audited by Gen Agent Trust Hub on Mar 27, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's primary function is to fetch markdown documentation from an internal corporate domain (
gitlab-erp-pas.dedalus.lan). These URLs align with the author's identity and stated purpose. - [SAFE]: No evidence of prompt injection, data exfiltration, or malicious persistence mechanisms was found. The skill operates within the scope of providing UI component documentation.
- [SAFE]: The use of the
WebFetchtool is appropriately limited to retrieving documentation files from a hardcoded base URL controlled by the vendor. - [SAFE]: Although the skill processes external data (Category 8), the source is the vendor's own internal repository, which is a trusted context for this specific use case. The agent is instructed to extract and present technical information from these files to assist the user.
Audit Metadata