p-eng
Pass
Audited by Gen Agent Trust Hub on Apr 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues detected. The skill consists of architectural templates and coding standards for NestJS development following Domain-Driven Design principles.
- [PROMPT_INJECTION]: No patterns of prompt injection or instructions to bypass safety filters were found. The instructions focus purely on structural and architectural guidance.
- [CREDENTIALS_UNSAFE]: No hardcoded credentials or sensitive secrets were found. Examples use standard placeholders (e.g., 'test-secret', 'hashed-password') and testing values in the context of documentation.
- [EXTERNAL_DOWNLOADS]: No suspicious external downloads or remote script executions were identified. The referenced libraries are standard technology components.
- [DATA_EXFILTRATION]: No data exfiltration patterns were detected. The skill promotes local business logic and standard persistence patterns using Prisma with clear separation of concerns.
- [COMMAND_EXECUTION]: No arbitrary command execution or privilege escalation vectors were found. Shell commands mentioned in documentation are standard development workflow tools (e.g., git status).
Audit Metadata