netlify-edge-functions
Pass
Audited by Gen Agent Trust Hub on Oct 9, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references the importation of modules from
esm.sh, a well-known service providing Deno-compatible ESM modules. - [COMMAND_EXECUTION]: Instructions include the installation and local execution of the
netlify-clifor development and deployment workflows. - [INDIRECT_PROMPT_INJECTION]: The skill describes patterns for handling untrusted client data, creating a potential surface for indirect injection if processed data is subsequently used in sensitive contexts.
- Ingestion points: Untrusted data enters the handler through the
Requestobject andContextproperties such ascookies,geo, and the requestbody(e.g.,req.json()in handler examples). - Boundary markers: Explicit delimiters or warnings for embedded instructions in processed data are not present in the instructional code examples.
- Capability inventory: Handler logic includes the ability to perform
fetchoperations, issue redirects viaResponse.redirect, and rewrite or transform responses usingcontext.nextandnew Response. - Sanitization: Code examples demonstrate basic data processing (e.g.,
text.toUpperCase()) but do not explicitly focus on sanitization or validation of untrusted input for downstream LLM consumers.
Audit Metadata