astro-server
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides comprehensive instructions for implementing standard Astro framework features, including API endpoints, middleware, and cookie management using native APIs like
Astro.requestandAstro.cookies. - [SAFE]: Strong security guidance is included throughout the files, explicitly instructing the user to never trust client-supplied values and to validate all inputs (params, query, body) before processing them.
- [SAFE]: Correct management of sensitive data is emphasized, such as using server-side environment variables for secrets instead of public variables, and implementing secure cookie attributes (
httpOnly,secure,sameSite) to mitigate XSS and CSRF risks. - [SAFE]: No malicious patterns such as prompt injection, obfuscation, remote code execution, or unauthorized data exfiltration were detected in any of the analyzed files.
- [SAFE]: The skill maintains a clear boundary between server and client environments, warning against leaking server-only context or PII into client bundles.
Audit Metadata