nextcloud-agents-app-scaffolder

Pass

Audited by Gen Agent Trust Hub on Jun 18, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements and enforces security best practices for Nextcloud development, including CSRF protection attributes (#[NoCSRFRequired]), strict type declarations (declare(strict_types=1)), and constructor-based dependency injection.
  • [SAFE]: External references and dependencies are limited to official Nextcloud documentation and standard NPM/Composer packages (@nextcloud/*), which are trusted within the developer ecosystem.
  • [SAFE]: No obfuscation, data exfiltration, or unauthorized command execution patterns were identified in the instruction set or templates.
  • [SAFE]: The skill provides detailed 'anti-patterns' documentation to explicitly warn against insecure or deprecated coding practices, such as missing security attributes or using legacy APIs.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 18, 2026, 05:35 PM
Security Audit — agent-trust-hub — nextcloud-agents-app-scaffolder