email-design
Pass
Audited by Gen Agent Trust Hub on Mar 17, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the
infshCLI to log in and execute applications for image generation. These commands are part of the intended functionality provided by the skill author. - [EXTERNAL_DOWNLOADS]: The documentation suggests installing additional tools via
npxfrom theinference-shrepository. As this originates from the skill's own vendor, it is considered a legitimate resource. - [PROMPT_INJECTION]: The skill takes user-provided HTML and text prompts to generate images. While this constitutes an indirect prompt injection surface, the risk is negligible as the data is handled by specialized image generation services with no access to sensitive system resources.
Audit Metadata