react-security

Pass

Audited by Gen Agent Trust Hub on Jul 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides legitimate security guidance for React developers. It correctly identifies high-risk patterns like storing tokens in localStorage and using dangerouslySetInnerHTML without sanitization.
  • [SAFE]: Code examples in references/REFERENCE.md demonstrate standard industry practices such as using DOMPurify for HTML sanitization, setting HttpOnly and Secure flags on cookies, and implementing CSRF tokens.
  • [SAFE]: The skill encourages the use of established security tools like npm audit and pnpm audit for dependency management.
  • [SAFE]: There are no signs of obfuscation, remote code execution, or data exfiltration. All external resource references are for documentation purposes (e.g., CSP and Auth patterns) and follow safe practices.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 17, 2026, 04:49 PM
Security Audit — agent-trust-hub — react-security