typescript-engineering

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns detected. The skill focuses on legitimate software engineering practices and explicitly warns against insecure patterns such as arbitrary code execution (eval), unsafe deserialization, and improper handling of secrets.
  • [EXTERNAL_DOWNLOADS]: Contains references to official documentation and trusted security resources including typescriptlang.org, typescript-eslint.io, Microsoft's GitHub, and OWASP. These are well-known, trusted sources and do not constitute a security risk.
  • [INDIRECT_PROMPT_INJECTION]: As a code engineering skill, it naturally processes external data (source code). The instructions include specific mitigations, directing the agent to validate untrusted input at boundaries and avoid common injection sinks, which effectively addresses the inherent risk surface.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 05:49 AM
Security Audit — agent-trust-hub — typescript-engineering