elysia-architecture

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill functions as a style guide and architectural template for Elysia.js development, promoting code organization and maintainability without introducing malicious behaviors.
  • [CREDENTIALS_SAFE]: The skill includes explicit instructions for secure credential management, recommending the use of T3 Env for validation and advising against logging raw secrets or hardcoding credentials in library packages.
  • [EXTERNAL_DOWNLOADS]: References within the skill point to standard, well-known industry libraries such as Elysia, Effect, Drizzle, and Vitest. No unverified or suspicious external dependencies are included.
  • [DYNAMIC_CONTEXT_INJECTION]: The skill metadata and instructions were scanned for dynamic execution patterns, and no instances of load-time shell command injection were detected.
  • [INDIRECT_PROMPT_INJECTION]: The skill defines a static set of rules for the agent to follow when reviewing or scaffolding code. It does not ingest untrusted external data in a way that creates a vulnerability surface for prompt injection.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 10:50 AM
Security Audit — agent-trust-hub — elysia-architecture