cohosted-frontend-backend

Pass

Audited by Gen Agent Trust Hub on Apr 9, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill functions as a technical resource providing architectural patterns and implementation templates. No malicious code, obfuscation, or injection attempts were detected.
  • [EXTERNAL_DOWNLOADS]: The provided Dockerfiles and build instructions reference official and trusted base images from Microsoft (mcr.microsoft.com/dotnet/*) and Node.js (node:22-alpine, node:22-slim). These are standard industry sources.
  • [COMMAND_EXECUTION]: The skill includes standard build and deployment commands (e.g., pnpm build, dotnet publish, npx umi build) as part of its educational templates. These are consistent with the skill's primary purpose of guiding development and deployment workflows.
  • [CREDENTIALS_UNSAFE]: No hardcoded credentials were found. The skill includes a 'Security Considerations' section that explicitly warns users against including sensitive information in frontend static assets and explains the proper use of environment variables.
  • [PROMPT_INJECTION]: The instructions do not contain any patterns typical of prompt injection, such as attempts to override safety filters, disregard previous instructions, or extract system prompts.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 9, 2026, 02:23 AM
Security Audit — agent-trust-hub — cohosted-frontend-backend