specsfy-specialist-laravel
Pass
Audited by Gen Agent Trust Hub on Sep 7, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill serves as a reference guide for Laravel development, focusing on secure coding practices such as authorization, validation, and secret management.
- [INDIRECT_PROMPT_INJECTION]: The instructions direct the agent to analyze project metadata (composer.json, composer.lock) to understand the environment. This represents an ingestion point for untrusted data.
- Ingestion points: composer.json and composer.lock files referenced in SKILL.md.
- Boundary markers: None explicitly defined in the prompt instructions.
- Capability inventory: The skill contains only documentation and does not utilize shell execution, file writing, or network tools.
- Sanitization: Relies on standard agent processing of JSON/lock files.
Audit Metadata