design-system-generator

Pass

Audited by Gen Agent Trust Hub on Mar 1, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill creates an indirect prompt injection surface by taking user answers to setup questions and embedding them into a DESIGN_SYSTEM.md file, which is then referenced as a set of rules for other agents.
  • Ingestion points: Required project configuration questions (1-9) in SKILL.md.
  • Boundary markers: Absent; user input is directly interpolated into the markdown template.
  • Capability inventory: Generation of markdown documentation and design token files.
  • Sanitization: No validation, sanitization, or escaping of user responses is performed.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 1, 2026, 12:14 AM