modern-web-design
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- Indirect Prompt Injection (LOW): The skill identifies a surface for indirect prompt injection (Category 8). It processes user-provided requirements to generate functional web code without implementing boundary markers or sanitization logic. 1. Ingestion points: User requirements and functionality needs described in the Implementation Workflow section of SKILL.md. 2. Boundary markers: Absent; there are no instructions to delimit user input or ignore embedded commands. 3. Capability inventory: Generation of HTML and JavaScript code, along with references to build-tools.js. 4. Sanitization: No sanitization or validation logic is defined for the interpolated user content.
Audit Metadata