express-nestjs

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a comprehensive guide for building Node.js APIs using Express and NestJS. It explicitly promotes security best practices, including the use of Helmet for security headers, CORS configuration, and rate limiting to prevent abuse.
  • [SAFE]: The provided code snippets demonstrate robust input validation using Zod and class-validator, which are essential for preventing injection attacks and ensuring data integrity.
  • [SAFE]: The skill includes instructions for graceful shutdown and centralized error handling, ensuring application stability and preventing the leakage of internal implementation details through error responses.
  • [SAFE]: Hardcoded secrets are explicitly listed as an anti-pattern, with instructions to use configuration services and environment variables instead.
  • [SAFE]: All external libraries referenced, such as Express, NestJS, Zod, and Fastify, are well-known, industry-standard packages from trusted sources.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 11:50 AM
Security Audit — agent-trust-hub — express-nestjs