fullstack-developer

Pass

Audited by Gen Agent Trust Hub on May 6, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements a robust human-in-the-loop workflow. It requires explicit user approval of the technical plan in Stage 3 before writing any implementation code and includes a final verification stage in Stage 7 using a comprehensive security checklist.
  • [SAFE]: The provided documentation in references/stack-footguns.md, references/principles.md, and references/nextjs.md contains extensive security guidance. It warns against SQL injection, secret exposure, insecure deserialization, and cross-site scripting (XSS), instructing the agent to follow secure coding practices.
  • [SAFE]: The skill includes specialized Reviewer subagent prompts in references/agents.md that are specifically tasked with auditing code for security vulnerabilities, including injection vectors, unredacted PII in logs, and authorization failures.
  • [SAFE]: No patterns of prompt injection, data exfiltration, obfuscation, or malicious persistence were detected in the instructions or reference files.
Audit Metadata
Risk Level
SAFE
Analyzed
May 6, 2026, 09:02 AM
Security Audit — agent-trust-hub — fullstack-developer