chrome-devtools
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
- PROMPT_INJECTION (LOW): Metadata indicates a surface for Indirect Prompt Injection.\n- Ingestion points: Processes external web content and network traffic via Puppeteer scraping (metadata.json).\n- Boundary markers: No boundary markers or instruction delimitation found in the provided metadata.\n- Capability inventory: Extensive capabilities including browser automation, form automation, and JavaScript debugging.\n- Sanitization: No sanitization logic provided in metadata to handle untrusted web inputs.\n- NO_CODE (SAFE): No executable code or instructions were provided in the analyzed file; assessment is based solely on metadata claims.
Audit Metadata