design-guide

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS] (SAFE): The skill installs Playwright and its associated browser binaries, which is standard behavior for web scraping and automation tools.
  • [SAFE] (SAFE): Analysis of the configuration files shows no evidence of malicious intent, credential exposure, or unauthorized network activity beyond the tool's core functionality.
  • [PROMPT_INJECTION] (SAFE): The tool has an indirect prompt injection surface as it ingests content from external URLs. 1. Ingestion points: Website HTML and CSS via Playwright. 2. Boundary markers: None. 3. Capability inventory: Local file writing and image processing. 4. Sanitization: None described.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:15 PM