frontend-security-coder

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill provides comprehensive and accurate instructions for frontend security best practices, such as preferring textContent over innerHTML and using DOMPurify for sanitization. The behavioral traits align with standard industry security guidelines.
  • [INDIRECT_PROMPT_INJECTION]: The skill's primary function involves processing and analyzing user-supplied frontend code and security requirements. This creates a standard ingestion surface where untrusted data enters the agent context. The skill mitigates this risk by providing specific instructions on validation and sanitization, and it lacks dangerous capabilities such as direct file-writing or arbitrary command execution that would escalate this concern.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 09:09 PM
Security Audit — agent-trust-hub — frontend-security-coder