security-and-hardening
Pass
Audited by Gen Agent Trust Hub on Sep 23, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides educational guidance on implementing security controls and hardening applications against common vulnerabilities such as SQL injection, XSS, and SSRF.
- [SAFE]: All code examples for handling sensitive operations, including authentication, file uploads, and session management, demonstrate secure coding practices aligned with industry standards.
- [SAFE]: Referenced external Node.js packages like zod, dompurify, helmet, and express-rate-limit are standard, reputable tools for security enforcement.
- [SAFE]: The skill correctly identifies LLM output as a vector for indirect prompt injection and instructs the agent to treat it as untrusted data requiring validation and encoding.
Audit Metadata