mermaidjs-v11

Pass

Audited by Gen Agent Trust Hub on Feb 16, 2026

Risk Level: LOWEXTERNAL_DOWNLOADS
Full Analysis
  • External Downloads (LOW): The skill provides instructions for installing the '@mermaid-js/mermaid-cli' package from npm and loading 'mermaid.min.js' via the jsDelivr CDN. While these are official and common distribution channels, they involve external code dependencies.
  • Indirect Prompt Injection (INFO): The skill documentation includes configuration for 'securityLevel' (strict, loose, antiscript), which is a crucial security feature to prevent script execution when rendering user-provided diagrams.
Audit Metadata
Risk Level
LOW
Analyzed
Feb 16, 2026, 10:44 AM