restful-hateoas

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: Detailed analysis of the skill's instructions, metadata, and reference files confirms it is a legitimate educational resource for developers. All code snippets follow security best practices and represent standard Ruby on Rails API implementation patterns with no malicious intent detected.\n- [INDIRECT_PROMPT_INJECTION]: The skill contains guidelines for processing untrusted user data via query parameters (such as filtering and sorting).\n
  • Ingestion points: Ingests external input from query parameters params[:fields], params[:sort], and various filter keys in references/coll-*.md.\n
  • Boundary markers: Not explicitly provided in the instructional text for LLM boundary management.\n
  • Capability inventory: Code examples demonstrate database query generation and result serialization in Rails controllers.\n
  • Sanitization: All provided code examples include robust sanitization techniques, including explicit whitelisting of sortable/selectable fields and the use of parameterized queries (?) to prevent SQL injection, which reduces the risk of malicious data influence.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 10:48 AM
Security Audit — agent-trust-hub — restful-hateoas