web-design-guidelines
Pass
Audited by Gen Agent Trust Hub on Feb 28, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill fetches design guidelines and instructions from Vercel Labs' official GitHub repository.
- [PROMPT_INJECTION]: The skill processes remote guidelines as instructions, which represents a surface for indirect prompt injection. However, the source is a trusted organization.
- Ingestion points: Remote URL (command.md) and user-provided UI source files.
- Boundary markers: None explicitly defined in the skill instructions.
- Capability inventory: Performs network requests to retrieve guidelines and reads local files for auditing.
- Sanitization: No explicit sanitization or filtering is performed on the ingested content.
Audit Metadata