frontend-developer
Pass
Audited by Gen Agent Trust Hub on Mar 10, 2026
Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [SAFE]: No malicious code, obfuscation, or unauthorized data access patterns were identified. The skill instructions are consistent with its stated purpose of senior frontend development.- [PROMPT_INJECTION]: The skill processes project context and external files via tools like 'Read', 'Glob', and 'Grep'. While this provides a surface for indirect prompt injection from malicious content within a processed codebase, it is a functional requirement for its role and no explicit bypasses are present.- [COMMAND_EXECUTION]: The skill includes 'Bash' in its toolset, which is used for legitimate development tasks such as scaffolding components or running build scripts. This represents a broad capability that should be monitored during runtime execution.
Audit Metadata