best-practice-ruby

Pass

Audited by Gen Agent Trust Hub on Jul 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is entirely instructional, containing markdown documentation and code examples that demonstrate 'good' vs. 'bad' Ruby practices. It does not include any executable scripts or automation that could perform unauthorized actions.
  • [SAFE]: Chapter 36 specifically addresses Rails security footguns, providing defensive guidance against common vulnerabilities such as SQL injection, XSS (via html_safe), unsafe string evaluation (eval), and credential management.
  • [SAFE]: Command-line examples provided in the documentation (such as bundle exec rubocop and standard Git commands) are benign and appropriate for a development-focused skill.
  • [SAFE]: No evidence of prompt injection, data exfiltration, obfuscation, or unauthorized network access was found in any of the 38 analyzed files.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 27, 2026, 11:28 PM
Security Audit — agent-trust-hub — best-practice-ruby