security-best-practices
Pass
Audited by Gen Agent Trust Hub on Mar 21, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [SAFE]: The skill is designed for defensive purposes and provides guidance that aligns with industry best practices, such as externalizing guidance into reference files and citing trusted sources like MDN, OWASP, and official framework documentation.
- [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface as its primary function involves the ingestion and analysis of untrusted source code from user repositories. 1. Ingestion points: The skill identifies the project tech stack and performs reviews by reading source files from the user's repository (SKILL.md). 2. Boundary markers: The skill does not define specific delimiters or instructions for the agent to ignore instructions embedded within the analyzed code. 3. Capability inventory: The skill utilizes file system read access for auditing and file system write access to produce a security report (SKILL.md). 4. Sanitization: The skill does not explicitly describe a process for sanitizing the audited code before it is processed by the agent.
Audit Metadata