env-and-secrets

Pass

Audited by Gen Agent Trust Hub on Aug 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides defensive guidelines for managing application secrets and environment variable boundaries.\n- [DATA_EXFILTRATION]: The instructions establish clear boundaries to prevent the accidental exposure of secrets, such as ignoring sensitive configuration files and ensuring server-side variables are excluded from client bundles.\n- [COMMAND_EXECUTION]: Shell command examples are limited to standard environment loading using the well-known and reputable dotenvx utility.\n- [EXTERNAL_DOWNLOADS]: References to external packages are limited to established, well-known libraries within the Node.js and T3 ecosystem.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 2, 2026, 09:40 PM
Security Audit — agent-trust-hub — env-and-secrets