security-owasp
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is designed as a defensive security resource. It provides best practices, common pitfalls (sharp edges), and validation patterns to assist in securing web applications against the OWASP Top 10.
- [INDIRECT_PROMPT_INJECTION]: While the skill is designed to analyze user-provided code (which is untrusted data), it lacks dangerous capabilities such as arbitrary file writes or network exfiltration that would make this surface exploitable. The instructions emphasize grounding in provided reference files to maintain analysis integrity.
Audit Metadata