best-practice-js
Pass
Audited by Gen Agent Trust Hub on Jul 27, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists of 37 markdown files that provide documentation and coding standards. No executable logic or automated scripts are included within the skill itself.
- [SAFE]: No prompt injection or adversarial instructions were detected. The guidelines are professional and focus on language idioms, performance, and security.
- [SAFE]: The skill explicitly teaches security best practices, such as avoiding the use of
eval(), preventing SQL injection through parameterized queries, and securing environment variables. It identifies these patterns as 'bad' examples for educational purposes. - [SAFE]: No obfuscation, data exfiltration, or persistence mechanisms were found. All code snippets are transparent and intended for best-practice demonstration.
- [SAFE]: The skill references standard development and security tools such as Prettier, ESLint, and Vitest, which are well-known and trusted in the JavaScript ecosystem.
Audit Metadata