skills/impertio-studio/nextcloud-claude-skill-package/nextcloud-agents-app-scaffolder/Gen Agent Trust Hub
nextcloud-agents-app-scaffolder
Pass
Audited by Gen Agent Trust Hub on Jun 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements and enforces security best practices for Nextcloud development, including CSRF protection attributes (#[NoCSRFRequired]), strict type declarations (declare(strict_types=1)), and constructor-based dependency injection.
- [SAFE]: External references and dependencies are limited to official Nextcloud documentation and standard NPM/Composer packages (@nextcloud/*), which are trusted within the developer ecosystem.
- [SAFE]: No obfuscation, data exfiltration, or unauthorized command execution patterns were identified in the instruction set or templates.
- [SAFE]: The skill provides detailed 'anti-patterns' documentation to explicitly warn against insecure or deprecated coding practices, such as missing security attributes or using legacy APIs.
Audit Metadata