security-review
Pass
Audited by Gen Agent Trust Hub on Jun 22, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a reference guide for security best practices. It provides code examples for both secure and insecure implementations to educate users and identify vulnerabilities.
- [SAFE]: All external references point to well-known and trusted security documentation sources, including OWASP, Next.js official documentation, and PortSwigger's Web Security Academy.
- [SAFE]: The skill recommends several industry-standard security-related libraries (e.g., zod for validation, DOMPurify for sanitization) as tools for implementing defensive measures.
- [SAFE]: Examples containing sensitive patterns (like hardcoded keys) are explicitly marked as "FAIL" and used only for educational demonstration purposes.
- [SAFE]: No executable scripts, unauthorized network operations, or hidden instructions were found in the skill metadata or body.
Audit Metadata