python-development
Pass
Audited by Gen Agent Trust Hub on Aug 19, 2026
Risk Level: SAFE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill provides templates for building web applications that ingest and process external data, creating a potential attack surface.
- Ingestion points: API endpoints defined in the generated FastAPI routers (
app/api/v1/endpoints/users.py) and Django views (apps/users/views.py). - Boundary markers: The generated templates do not include specific boundary markers or instructions for the agent to ignore embedded commands in the processed data.
- Capability inventory: The generated code includes database operations (SQLAlchemy/Django ORM), logging, and potential network requests (via
aiohttpexamples). - Sanitization: Present. The skill provides and encourages the use of Pydantic models and Django Rest Framework serializers to validate and sanitize incoming data, which effectively mitigates potential injection risks.
Audit Metadata