perl-security
Pass
Audited by Gen Agent Trust Hub on Sep 12, 2026
Risk Level: SAFECOMMAND_EXECUTIONDYNAMIC_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: Static analysis detected destructive commands (e.g.,
rm -rf /) within the skill content. These occur strictly within code comments and documentation examples designed to illustrate shell injection vulnerabilities. They are explicitly identified as "Bad" or "Anti-Patterns" to educate the user on what to avoid. - [DYNAMIC_EXECUTION]: The skill discusses the risks associated with Perl's
evalfunction and remote code execution. It provides correct guidance on avoiding string-basedevalwith user input and demonstrates the proper use of block-basedevalfor exception handling in regex operations. - [SAFE]: The skill is a comprehensive security guide authored to improve application safety. It recommends standard industry practices such as taint mode, parameterized queries, and proper output encoding.
Audit Metadata