best-practice-ruby
Pass
Audited by Gen Agent Trust Hub on Jul 27, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is entirely instructional, containing markdown documentation and code examples that demonstrate 'good' vs. 'bad' Ruby practices. It does not include any executable scripts or automation that could perform unauthorized actions.
- [SAFE]: Chapter 36 specifically addresses Rails security footguns, providing defensive guidance against common vulnerabilities such as SQL injection, XSS (via html_safe), unsafe string evaluation (eval), and credential management.
- [SAFE]: Command-line examples provided in the documentation (such as
bundle exec rubocopand standard Git commands) are benign and appropriate for a development-focused skill. - [SAFE]: No evidence of prompt injection, data exfiltration, obfuscation, or unauthorized network access was found in any of the 38 analyzed files.
Audit Metadata