Agent Economy Report

Skill code audit

SAFE version 0.1.0 · audited 2026-09-17

frontend-design-3 @michaelmonetized

This package is a text-only skill that tells an AI agent how to design frontend interfaces. It contains no runnable code, no scripts, no network calls, no file operations, and no requests for credentials or payment. The only external reference is a publisher profile link on clawhub.ai in the metadata. The instructions are opinionated about design choices but do not attempt to override safety rules or hide data. Nothing observed exceeds the declared purpose.

Declared purposeCreate distinctive, production-grade frontend interfaces with high design quality, avoiding generic AI aesthetics.
Observed behaviorThe skill provides written design guidance and instructs the agent to output frontend source code such as HTML/CSS/JS, React, or Vue. It does not execute any shell commands, install packages, access files, make network requests, or interact with credentials or payments. The package contains only Markdown and metadata.
Verdict, rules onlySAFE
Verdict, AISAFE
Final verdictSAFE (never better than either pass)

Capabilities

capabilityvs purposedetail
otherneededProvides natural-language design instructions and examples; no privileged or runtime capability is requested.

Findings

severityfinding
infoDeclared purpose
The skill is declared as frontend design guidance for building web interfaces.
SKILL.md:3 description: Create distinctive, production-grade frontend interfaces with high design quality. Use this skill when building web components, pages, or applicati
infoExpected output
The skill asks the agent to produce frontend source code, which is consistent with the declared purpose.
SKILL.md:58 Implement working code (HTML/CSS/JS, React, Vue, etc.) that is:
infoInstruction to model
This is persuasive style guidance for the model. It does not attempt to override security or operational rules.
SKILL.md:68 *Remember: Claude is capable of extraordinary creative work. Don't hold back — show what can truly be created when thinking outside the box and committing fully
lowPublisher link
Metadata contains a publisher profile link on clawhub.ai. The skill does not instruct the agent to fetch or send data to this domain.
skill-card.md:9 [michaelmonetized](https://clawhub.ai/user/michaelmonetized)
infoDisclosed risk
The card discloses that its design guidance may conflict with project constraints; no malicious capability is indicated.
skill-card.md:24 Risk: Opinionated frontend guidance can steer agents toward design choices that do not match a product's brand, accessibility requirements, or engineering const
infoPackage version
Confirms package version metadata only.
_meta.json:4 "version": "0.1.0"

0 AI finding(s) were dropped because their file, line or quote did not match the package.

Network destinations in the code

domainservice ratingwhere
clawhub.ainot in the service indexskill-card.md:9

Other facts

Binaries invokednone
Environment variables readnone
Hard-coded walletsnone
Pipes a download to a shell0
eval / exec / subprocess0
base64 blobs0
File writes0
Persistence0

Files audited

filelinessha256
SKILL.md68b19efbc330acb7e4…
_meta.json63f21b7bebfac2ea1…
skill-card.md47c6a40d794940f062…

For agents

JSON: https://agenteconomy.report/k/frontend-design-3.audit.json · badge: https://agenteconomy.report/k/frontend-design-3.audited.svg · skill rating: /k/frontend-design-3 · commission an audit of any skill: US$ 29 per version.

How this is computed

The complete published package of this exact version was downloaded from the registry and read statically; nothing was executed. A deterministic pass extracts network destinations, binaries, environment variables, writes, install commands, obfuscation markers, subprocesses and wallets, each with file and line. An AI then reads the whole package with those facts and writes the summary, the capabilities and the findings under a strict schema; every finding it produces must cite a file, a line and the exact text, or it is dropped. The final verdict is the worst of the two passes. The audit does not change the skill's trust tier (policy); the author may respond through the dispute channel and the response is published here. Commissioned by: the Agent Economy Report (free program: the 150 most downloaded skills, September 2026).