webapp
Pass
Audited by Gen Agent Trust Hub on Apr 8, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides a structured template for web application development. It includes standard build scripts and configuration files that use well-known libraries from official registries.
- [DATA_EXFILTRATION]: No evidence of hardcoded credentials or unauthorized data exfiltration. The template correctly uses environment variables for sensitive configuration like database connection strings.
- [PROMPT_INJECTION]: The instructions focus on application architecture and development workflows without attempting to bypass agent safety filters or override core behaviors.
- [INDIRECT_PROMPT_INJECTION]: While the skill builds applications that process external data, the instructions explicitly mandate the use of Zod for schema validation and strict backend sanitization, mitigating risks of malicious data influencing agent behavior.
- [REMOTE_CODE_EXECUTION]: No remote code execution patterns were found. Package installations and build processes follow standard, verifiable Node.js development patterns.
Audit Metadata