specsfy-specialist-application-security

Pass

Audited by Gen Agent Trust Hub on Aug 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is purely instructional, providing a framework for security analysis without any associated executable scripts or tools. All identified content focuses on defensive security best practices and standardized methodologies.
  • [SAFE]: External references are limited to well-known and trusted security organizations, including OWASP (ASVS, API Security, Threat Modeling), NIST (SSDF, Digital Identity), and OpenSSF. These links are for informational purposes only and do not involve remote code execution or data exfiltration.
  • [SAFE]: The workflow and patterns described (e.g., 'Least Privilege', 'Deny by Default', 'Server-side Authorization') promote secure development lifecycles and do not introduce bypasses or prompt injection vulnerabilities.
  • [SAFE]: There are no detected persistence mechanisms, obfuscation techniques, or attempts to access sensitive system files or credentials. The skill is entirely transparent in its documentation purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 22, 2026, 09:19 PM
Security Audit — agent-trust-hub — specsfy-specialist-application-security