bounded-backend

Pass

Audited by Gen Agent Trust Hub on Sep 7, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONDYNAMIC_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Documentation references official vendor-supported libraries and common utility packages (e.g., @bounded-sh/server, @flue/runtime, valibot, ms) for use in backend environments.
  • [COMMAND_EXECUTION]: Guides users through standard operations using the bounded CLI, such as deploying policies (bounded deploy), verifying invariants (bounded verify), and managing secrets (bounded secret put).
  • [DYNAMIC_EXECUTION]: Describes the platform's intended functionality for executing user-authored TypeScript/JavaScript functions and realtime modules within managed, spend-capped server isolates.
  • [SAFE]: The analyzed files consist entirely of technical documentation and policy templates intended to assist developers in building and securing backends using the Bounded platform's formal verification and runtime enforcement features.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 7, 2026, 06:35 PM
Security Audit — agent-trust-hub — bounded-backend