php-rbac-authorization
Pass
Audited by Gen Agent Trust Hub on Sep 19, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides defensive coding guidelines for PHP authorization systems.
- [EXTERNAL_DOWNLOADS]: The skill references established PHP libraries from the Laminas project (laminas/laminas-permissions-rbac and mezzio/mezzio-authorization-rbac). These are well-known, industry-standard packages for the target platform.
- [COMMAND_EXECUTION]: No shell commands or subprocess operations are present in the skill instructions or code examples.
- [DATA_EXFILTRATION]: No network operations, hardcoded secrets, or sensitive file path accesses were detected.
- [PROMPT_INJECTION]: The instructions do not contain attempts to override agent behavior, bypass safety filters, or extract system prompts.
- [OBFUSCATION]: No encoded content, hidden characters, or homoglyph attacks were found in the skill body or metadata.
- [INDIRECT_PROMPT_INJECTION]: While the skill is designed to guide the review of external PHP code (which represents a data ingestion surface), the instructions provided are themselves defensive and intended to improve application security posture.
Audit Metadata