better-auth-best-practices
Pass
Audited by Gen Agent Trust Hub on Aug 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides integration advice and configuration references for the Better Auth framework, focusing on preventing common development and deployment errors.
- [SAFE]: Documents the use of environment variables for secrets (
BETTER_AUTH_SECRET) and provides instructions on generating secure secrets using standard system tools likeopensslwithout hardcoding any actual credentials. - [SAFE]: References standard development commands such as
npx @better-auth/clifor database migrations and schema generation, which is expected behavior for this framework's official tooling. - [SAFE]: Includes explicit security warnings against disabling critical protections like
disableCSRFCheckanddisableOriginCheck, promoting a secure-by-default posture for developers.
Audit Metadata