skills/kriscard/skills/frontend/Gen Agent Trust Hub

frontend

Pass

Audited by Gen Agent Trust Hub on Jul 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's primary purpose is providing instructional guidance for auditing TypeScript, Next.js, and React applications. No malicious patterns such as prompt injection, exfiltration, or obfuscation were detected.
  • [SAFE]: Security guidance provided in the references/security.md file (e.g., XSS prevention via DOMPurify, Content Security Policy implementation, and secure token storage in httpOnly cookies) aligns with industry-standard defensive practices.
  • [SAFE]: External references are limited to well-known and trusted documentation sources including MDN, the Official Next.js documentation, and reputable community projects like Bulletproof React.
  • [SAFE]: Code examples involving package installation (e.g., pnpm add zod) or shell commands (e.g., openssl for SRI hash generation) are provided solely for developer education and are not executed by the skill itself.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 1, 2026, 12:37 AM
Security Audit — agent-trust-hub — frontend