env-and-secrets
Pass
Audited by Gen Agent Trust Hub on Aug 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides defensive guidelines for managing application secrets and environment variable boundaries.\n- [DATA_EXFILTRATION]: The instructions establish clear boundaries to prevent the accidental exposure of secrets, such as ignoring sensitive configuration files and ensuring server-side variables are excluded from client bundles.\n- [COMMAND_EXECUTION]: Shell command examples are limited to standard environment loading using the well-known and reputable dotenvx utility.\n- [EXTERNAL_DOWNLOADS]: References to external packages are limited to established, well-known libraries within the Node.js and T3 ecosystem.
Audit Metadata