trust-badges-generator

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFENO_CODEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill is a documentation-only resource focused on UI/UX best practices. It contains no code, scripts, or tool definitions that could be misused for malicious purposes.
  • [NO_CODE]: The skill consists entirely of markdown instructions and does not bundle any executable scripts or binary files.
  • [INDIRECT_PROMPT_INJECTION]: The skill directs the agent to read project context files which are external to the skill itself. The following evidence chain applies:
  • Ingestion points: The skill reads .claude/project-context.md and .cursor/project-context.md (SKILL.md).
  • Boundary markers: None present.
  • Capability inventory: No high-risk capabilities (network, file writes, or shell execution) are defined in this skill.
  • Sanitization: None present.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 01:08 PM
Security Audit — agent-trust-hub — trust-badges-generator