design
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [No Code] (SAFE): The skill consists entirely of natural language instructions in a markdown file. There are no associated scripts (.py, .js, .sh), binaries, or configuration files that execute logic on the host system.\n- [Indirect Prompt Injection] (SAFE): The skill is designed to process user-provided UI requirements. While this represents a data ingestion surface, the skill lacks high-risk capabilities such as file system modification, network exfiltration, or shell command execution. The only referenced capability is
generate_image, which is a low-risk visual tool.\n- [Prompt Injection] (SAFE): The instructions follow standard persona-loading patterns and do not contain any directives to bypass safety filters, disclose system prompts, or override agent constraints.
Audit Metadata