cloudflare
Pass
Audited by Gen Agent Trust Hub on Mar 29, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists entirely of reference documentation and code examples for Cloudflare developer tools and services. No malicious instructions, obfuscation, or unauthorized access patterns were detected.
- [SAFE]: All database interaction examples (e.g., for Cloudflare D1) correctly demonstrate the use of prepared statements and parameter binding (
.prepare().bind()) to prevent SQL injection vulnerabilities. - [SAFE]: Examples involving sensitive credentials consistently use placeholders (e.g.,
YOUR_API_TOKEN) and provide instructions for secure management via environment variables or thewrangler secretcommand rather than hardcoding. - [SAFE]: The documentation includes responsible security disclosures, such as warning users that the
workerdruntime is not a hardened sandbox for untrusted code execution in multi-tenant environments. - [SAFE]: Remote script references (such as
curl | shforcode-server) are provided strictly as configuration examples for users to set up their own isolated development environments within Cloudflare Sandbox containers.
Audit Metadata