Ae1
- Category
- analysis-evasion
- Confidence
- 100% confidence
- Finding
Referenced artifact was not completely inspected
- Content
md 4. 改 `02_capture.mjs` 配置区(截图步骤、交互态 before JS),批量截图
Security audit
Security checks for vulnerabilities and agentic risk
This is a coherent local workflow for turning an HTML prototype into a Chinese PRD, with no hidden exfiltration, persistence, credential access, or destructive behavior found.
Install only if you want a Chinese-language HTML-prototype-to-PRD pipeline. Run it on prototypes you are allowed to inspect, use the documented staging directory and isolated Chrome profile, and close the local HTTP server and headless Chrome process when finished.
Referenced artifact was not completely inspected
4. 改 `02_capture.mjs` 配置区(截图步骤、交互态 before JS),批量截图
Referenced artifact was not completely inspected
4. 改 `02_capture.mjs` 配置区(截图步骤、交互态 before JS),批量截图
Referenced artifact was not completely inspected
7. 复制成品到 staging 为 `prd_view.html`,改 `04_verify.mjs` 期望值,跑验收:坏图=0、结构数字对
Referenced artifact was not completely inspected
7. 复制成品到 staging 为 `prd_view.html`,改 `04_verify.mjs` 期望值,跑验收:坏图=0、结构数字对
The skill description contains many broad trigger phrases for activation, such as multiple variants of converting HTML prototypes, demos, and webpages into PRDs, without clear boundaries or exclusions. This can cause the agent to invoke the skill in situations where the user did not specifically request this workflow, leading to incorrect tool routing, unintended processing of local HTML content, or unnecessary execution of a complex screenshotting/document-generation pipeline.
The script's natural-language interface is entirely Chinese, including usage comments and the generated output filename 产品需求文档PRD.html. Under the stated policy, forcing a specific language or locale without user opt-in is a natural-language policy violation unless the locale constraint is clearly documented and justified.
The instruction “禁用:emoji、中文破折号 ——” enforces a specific language/style constraint in natural language. There is no indication that the user can choose another style or that this constraint is required for a justified locale- or compliance-specific reason.
The document declares lang="zh-CN", and all visible content is written in Simplified Chinese. Under the policy, forcing a specific language/locale without user opt-in can be a natural-language policy violation unless the constraint is clearly documented and justified, which is not present here.
The file’s user-facing comments and usage instructions are written entirely in Chinese, including setup, usage, and output guidance. Under the stated policy, a language constraint can be a natural-language policy violation when it forces a specific language without opt-in or an explicit justification.
This file’s natural-language instructions, rules, and usage notes are presented exclusively in Chinese. Under the policy, forcing a specific language without user opt-in or documented locale justification is a natural-language policy concern.
No suspicious patterns detected.