fastapi-python
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
- [SAFE]: The skill instructions consist purely of natural language guidance and architectural best practices for software development.
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process user-provided code and requirements, creating an inherent attack surface for indirect prompt injection. However, since the skill does not request access to sensitive tools or perform automated actions, the risk is minimal and consistent with standard AI assistant behavior.
- Ingestion points: User-provided technical requirements and Python code snippets (SKILL.md).
- Boundary markers: Absent.
- Capability inventory: No tool execution or file system access is defined within the skill frontmatter or body.
- Sanitization: Standard LLM guardrails apply; no explicit sanitization logic is provided in the skill.
- [NO_CODE]: The skill does not include any standalone scripts or executable files, further reducing the potential for malicious behavior.
Audit Metadata