skills/ericrisco/rsc-harness/laravel/Gen Agent Trust Hub

laravel

Pass

Audited by Gen Agent Trust Hub on Sep 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides comprehensive and correct documentation for modern Laravel (v11/v12) practices, including architectural changes in the slim skeleton where middleware and routing are configured in bootstrap/app.php instead of the legacy Kernel classes.
  • [SAFE]: The included verification script (scripts/verify.sh) performs read-only quality checks, such as style linting, test execution, and manifest validation. It correctly identifies and uses local project binaries (vendor/bin/pint, vendor/bin/pest) and degrades gracefully if Laravel is not present, showing no signs of malicious command execution.
  • [SAFE]: The skill actively promotes framework-native security best practices, including preventing mass-assignment vulnerabilities via explicit $fillable allowlists and avoiding direct usage of env() outside of configuration files to prevent data exposure in production environments.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 21, 2026, 11:11 PM
Security Audit — agent-trust-hub — laravel