solid-impl-solidstart
Pass
Audited by Gen Agent Trust Hub on Jun 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a purely instructional reference for SolidStart developers, providing file structure examples, API signatures, and migration guides.
- [PROMPT_INJECTION]: No override markers, role-play instructions, or attempts to bypass system constraints were detected. The use of imperative language ('ALWAYS', 'NEVER') is restricted to technical best practices for the framework's runtime requirements.
- [DATA_EXPOSURE]: No hardcoded secrets, credentials, or sensitive file paths (e.g., .env, .ssh) are accessed or exposed.
- [REMOTE_CODE_EXECUTION]: The skill does not perform any remote code downloads, shell command executions, or installations of untrusted dependencies.
- [INDIRECT_PROMPT_INJECTION]: While the skill demonstrates the use of
innerHTMLfor rendering content, this is presented as a standard framework feature in a controlled coding example and does not represent a vulnerability for the AI agent itself.
Audit Metadata