cloudflare

Pass

Audited by Gen Agent Trust Hub on Mar 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists entirely of reference documentation and code examples for Cloudflare developer tools and services. No malicious instructions, obfuscation, or unauthorized access patterns were detected.
  • [SAFE]: All database interaction examples (e.g., for Cloudflare D1) correctly demonstrate the use of prepared statements and parameter binding (.prepare().bind()) to prevent SQL injection vulnerabilities.
  • [SAFE]: Examples involving sensitive credentials consistently use placeholders (e.g., YOUR_API_TOKEN) and provide instructions for secure management via environment variables or the wrangler secret command rather than hardcoding.
  • [SAFE]: The documentation includes responsible security disclosures, such as warning users that the workerd runtime is not a hardened sandbox for untrusted code execution in multi-tenant environments.
  • [SAFE]: Remote script references (such as curl | sh for code-server) are provided strictly as configuration examples for users to set up their own isolated development environments within Cloudflare Sandbox containers.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 29, 2026, 02:05 AM
Security Audit — agent-trust-hub — cloudflare