auditor-estatico-plus
Pass
Audited by Gen Agent Trust Hub on Apr 12, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill acts as a set of guidelines for performing static analysis of frontend code (HTML, Next.js). It does not contain any executable scripts, remote downloads, or credential exfiltration patterns.
- [SAFE]: The security instructions specifically task the agent with identifying common risks such as hardcoded API keys (e.g., Stripe, Supabase) and insecure third-party scripts in the user's provided code, which is a defensive measure.
- [SAFE]: The skill includes explicit restrictions that prevent the agent from modifying code or adding backend logic, ensuring it remains within a read-only auditing scope.
Audit Metadata