php-pro
Pass
Audited by Gen Agent Trust Hub on Sep 13, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides standard development patterns for PHP frameworks (Laravel, Symfony) and async libraries (Swoole, ReactPHP, Amphp). All code examples follow industry best practices for enterprise architecture.
- [SAFE]: Security constraints are explicitly defined in the core instructions, including requirements for secure password hashing (bcrypt/argon2), protection against SQL injection, and mandatory input validation using typed requests.
- [SAFE]: The workflow incorporates standard industry tools for static analysis (PHPStan at level 9, Psalm) and testing (PHPUnit, Pest) to ensure code quality and safety before delivery.
- [SAFE]: Reference materials for database connections and HTTP clients use standard placeholder credentials (e.g., 'password') and documentation-only domains (e.g., 'example.com'), which does not represent a credential exposure risk.
Audit Metadata