security-review

Pass

Audited by Gen Agent Trust Hub on Sep 12, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill acts as an educational and procedural guide for implementing security controls, such as secrets management, input validation, and SQL injection prevention.
  • [SAFE]: Examples of insecure code (e.g., hardcoded secrets or raw SQL concatenation) are explicitly labeled as 'FAIL' patterns to be avoided, serving as a negative reference for safety checks.
  • [EXTERNAL_DOWNLOADS]: The skill references official and well-known GitHub Actions, such as 'actions/checkout', 'trufflesecurity/trufflehog', and 'aws-actions/configure-aws-credentials', which are standard tools for secure CI/CD workflows.
  • [COMMAND_EXECUTION]: The skill documents standard administrative and security commands (e.g., 'npm audit', 'aws iam enable-mfa-device') intended for manual or pipeline execution by the user.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 12, 2026, 03:40 PM
Security Audit — agent-trust-hub — security-review