astro-auth
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides high-level architectural guidance and best practices for implementing authentication and authorization in Astro projects without including any executable malicious scripts.
- [SAFE]: No evidence of prompt injection, obfuscation, or persistence mechanisms was found. The instructions follow standard framework patterns for Astro.
- [SAFE]: The skill emphasizes critical security practices, including the use of modern Key Derivation Functions (KDFs), secure cookie flags (httpOnly, secure, sameSite), and server-side validation, which are essential for preventing credential exposure.
- [SAFE]: All external references point to official documentation from a well-known service (docs.astro.build), and no unauthorized network operations or exfiltration patterns were detected.
- [SAFE]: The documentation includes a comprehensive list of anti-patterns, warning users against storing credentials in client-visible storage or implementing custom cryptography, which helps prevent common developer security errors.
Audit Metadata