toss-frontend-fundamentals

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • SAFE (SAFE): The skill contains only informational Markdown files and static code snippets (TypeScript/React). No executable scripts, shell commands, or network-accessing tools were found across the 20 analyzed files.- Indirect Prompt Injection (LOW): The skill's primary function is to process and review user-supplied code, which is an untrusted data source. However, the skill does not expose any dangerous capabilities such as file system writes, network requests, or dynamic code execution. The structured coding rules provided by the skill act as context boundaries that guide the agent's analysis. Mandatory Evidence Chain: 1. Ingestion points: User-provided code for review (referenced in SKILL.md). 2. Boundary markers: Structured rule files (rules/*.md) providing specific analytical categories. 3. Capability inventory: None (no scripts or external tools included). 4. Sanitization: N/A as no code execution is performed by the skill.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:28 PM