backend-systems-guidance
Pass
Audited by Gen Agent Trust Hub on Sep 25, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides architectural and security guidelines. It explicitly promotes security best practices, such as enforcing authorization at entrypoints and implementing SSRF protections for outbound calls. No executable code, remote downloads, or obfuscation techniques were identified.
- [INDIRECT_PROMPT_INJECTION]: The skill establishes a workflow for processing untrusted source code.
- Ingestion points: The skill reads backend files to map the request path (SKILL.md, Core workflow Step 1).
- Boundary markers: None explicitly defined in the instructions.
- Capability inventory: The skill allows for implementing or reviewing code, involving file I/O via agent tools; it does not invoke network or system-level capabilities.
- Sanitization: The skill explicitly instructs the agent to perform authentication, validation, and error mapping on the data it processes.
Audit Metadata