django-expert

Pass

Audited by Gen Agent Trust Hub on Aug 26, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides comprehensive and secure development guidance for Django and Django REST Framework. It explicitly instructs the user to avoid common security pitfalls like hardcoding secrets in settings.py, using DEBUG=True in production, or using unparameterized raw SQL.
  • [INDIRECT_PROMPT_INJECTION]: The skill represents a surface for indirect prompt injection as it processes user requirements to generate code and shell commands. However, it includes explicit constraints to validate user input and follow security best practices, mitigating the risk of executing or generating unsafe code.
  • Ingestion points: User-provided application requirements and schema definitions.
  • Boundary markers: None explicitly defined in the skill structure.
  • Capability inventory: The skill guides the agent in writing Python code, configuring database settings, and executing management commands (manage.py migrate).
  • Sanitization: The skill includes a 'MUST NOT DO' constraint regarding trusting user input without validation.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 26, 2026, 05:56 PM
Security Audit — agent-trust-hub — django-expert