Security audit
frontend-developer
Security checks for vulnerabilities and agentic risk
Overview
This is a text-only Flutter development guidance skill with no evidence of hidden execution, credential use, persistence, or unrelated data access.
Safe to install for Flutter development assistance. Review any generated app code involving device permissions, signing, analytics, notifications, or production deployment because those choices can affect users even though the skill itself does not add special access.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
