web-design-guidelines
Pass
Audited by Gen Agent Trust Hub on Mar 1, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: Fetches configuration and design guidelines from Vercel Labs' official GitHub repository. This is a trusted and well-known source.
- [PROMPT_INJECTION]: The skill identifies a surface for indirect prompt injection through the ingestion of external data.
- Ingestion points: Remote markdown file (
command.md) from GitHub and user-specified local files. - Boundary markers: None present.
- Capability inventory: Web fetching (WebFetch) and local file reading.
- Sanitization: No explicit sanitization or validation of the fetched content is specified in the skill logic.
Audit Metadata