vite-browser-release-smoke

Pass

Audited by Gen Agent Trust Hub on Mar 14, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: The skill presents an indirect prompt injection surface by processing external data from websites, browser logs, and error messages.
  • Ingestion points: vite-browser open <url>, vite-browser logs, and vite-browser network in SKILL.md.
  • Boundary markers: None identified; the skill does not explicitly provide instructions to ignore content within logs or page data.
  • Capability inventory: The skill uses vite-browser to inspect framework-specific data (Vue, Pinia, Router) and Vite runtime state as described in SKILL.md.
  • Sanitization: No specific sanitization methods for external data are mentioned.
  • [COMMAND_EXECUTION]: The skill executes vite-browser CLI commands to perform application state diagnostics.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 14, 2026, 01:05 PM