skills/immamdouhaboammar/antigravity-superpowers/agency-drupal-shopping-cart-engineer/Gen Agent Trust Hub
agency-drupal-shopping-cart-engineer
Pass
Audited by Gen Agent Trust Hub on Aug 11, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: The skill uses natural instructional language to define a professional persona. No attempts to override safety filters, bypass constraints, or extract system prompts were detected.
- [DATA_EXPOSURE]: The skill explicitly promotes security best practices regarding sensitive data. Rule 3 ('Payment gateway credentials never live in code or config that's committed') specifically instructs the agent to use environment variables or secret managers, mitigating credential exposure risks.
- [REMOTE_CODE_EXECUTION]: There are no commands or instructions that involve downloading and executing remote scripts or installing unverified packages. It references standard Drupal tools like Composer and Drush in a purely instructional context.
- [COMMAND_EXECUTION]: While the skill mentions Drush commands (e.g.,
drush updatedb), these are documented as standard deployment steps for the user to follow, rather than instructions for the agent to execute silently or dangerously. - [SAFE]: The overall content is educational and professional, focusing on high-reliability storefront delivery and standard software engineering practices without any malicious patterns.
Audit Metadata