core-web-vitals
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOW
Full Analysis
- Prompt Injection (SAFE): No instructions attempting to bypass safety filters or override agent behavior were found. The text consists entirely of technical guidelines.
- Data Exposure & Exfiltration (SAFE): No hardcoded credentials, sensitive file path access, or exfiltration logic detected. Network references are limited to standard development placeholders like 'api.example.com'.
- Obfuscation (SAFE): No encoded content, zero-width characters, or homoglyphs were found. The markdown is plain and transparent.
- Remote Code Execution (SAFE): No patterns of downloading or executing untrusted code were identified. Mentions of libraries such as 'web-vitals' are recommendations for standard performance monitoring.
- Indirect Prompt Injection (SAFE): The skill is static documentation and does not ingest or process external untrusted data that could influence agent behavior.
Audit Metadata