figma-use

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a purely informational and instructional resource for an AI agent to use a Figma-specific tool correctly.
  • [SAFE]: All code snippets use standard Figma Plugin API methods and follow best practices for the platform (e.g., handling font loading and async operations).
  • [SAFE]: No network operations, credential exposures, or attempts to access the host file system were found. The skill operates entirely within the context of the Figma Plugin environment.
  • [SAFE]: While a multi-layer Base64 encoding pattern is present in a helper script within references/component-patterns.md, it is used legitimately for generating unique hash keys from node properties to deduplicate entries during metadata extraction, rather than for obfuscating malicious intent.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 07:16 AM