ts-forms
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill promotes secure engineering practices by emphasizing that client-side validation is a user experience feature, not a security boundary. It mandates server-side re-validation using shared Zod schemas to prevent attackers from bypassing form constraints.
- [SAFE]: Code examples demonstrate correct handling of asynchronous validation, including the use of encodeURIComponent for query parameters to prevent basic injection issues during lookups.
- [SAFE]: Provides guidance on preventing common UI-level vulnerabilities like duplicate form submissions by using the isSubmitting state to gate actions.
- [SAFE]: No malicious patterns such as obfuscation, credential exfiltration, or unauthorized command execution were detected.
Audit Metadata