fullstack-developer
Pass
Audited by Gen Agent Trust Hub on May 6, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements a robust human-in-the-loop workflow. It requires explicit user approval of the technical plan in Stage 3 before writing any implementation code and includes a final verification stage in Stage 7 using a comprehensive security checklist.
- [SAFE]: The provided documentation in references/stack-footguns.md, references/principles.md, and references/nextjs.md contains extensive security guidance. It warns against SQL injection, secret exposure, insecure deserialization, and cross-site scripting (XSS), instructing the agent to follow secure coding practices.
- [SAFE]: The skill includes specialized Reviewer subagent prompts in references/agents.md that are specifically tasked with auditing code for security vulnerabilities, including injection vectors, unredacted PII in logs, and authorization failures.
- [SAFE]: No patterns of prompt injection, data exfiltration, obfuscation, or malicious persistence were detected in the instructions or reference files.
Audit Metadata