appsec-expert
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill contains educational examples of insecure coding practices, such as hardcoded credentials and SQL injection vulnerabilities, which are explicitly labeled as anti-patterns to avoid. These examples are non-functional and serve as training material for security remediation.
- [SAFE]: The implementation patterns provided in the reference files demonstrate secure usage of standard libraries for authentication, cryptography, and input validation, including argon2, cryptography, and HashiCorp Vault.
- [SAFE]: The skill provides instructions for using established security analysis tools like semgrep, gitleaks, and pip-audit. These are standard industry tools and do not involve suspicious remote code execution or data exfiltration.
Audit Metadata