flutter-navigation-and-routing
Pass
Audited by Gen Agent Trust Hub on Jun 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill defines a secure boundary for navigation by delegating sensitive token management to dedicated data-handling layers, reducing the risk of credential exposure within the routing logic.
- [SAFE]: It explicitly treats deep links and notification payloads as untrusted external inputs (Indirect Prompt Injection surface), requiring strict validation, sanitization, and fallback mechanisms for malformed data.
- [SAFE]: It mandates a 'no-flash' authentication redirect policy, ensuring that the navigation layer resolves authorization before building protected UI components, which prevents accidental data leakage.
- [SAFE]: The provided templates and playbooks demonstrate best practices for preventing common vulnerabilities such as open redirects and auth-gate bypasses via manipulated query parameters.
Audit Metadata