email-marketing

Pass

Audited by Gen Agent Trust Hub on May 4, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: No override or bypass commands were detected in the instructions. The workflow follows standard design-to-code patterns.
  • [DATA_EXFILTRATION]: No network operations or sensitive file path access were identified. The skill explicitly mandates the use of inline SVGs or gradients instead of external images, which enhances privacy and security.
  • [REMOTE_CODE_EXECUTION]: No package installations, remote script executions, or dynamic code execution patterns were found.
  • [OBFUSCATION]: No encoded content, hidden characters, or homoglyphs were detected in the skill files or metadata.
  • [INDIRECT_PROMPT_INJECTION]: While the skill ingests external data (DESIGN.md and user briefs), it possesses no exploitable capabilities such as shell execution or network access. It merely transforms input data into static HTML artifacts.
Audit Metadata
Risk Level
SAFE
Analyzed
May 4, 2026, 05:14 PM