astro-security
Pass
Audited by Gen Agent Trust Hub on May 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is purely instructional and provides a comprehensive checklist for security auditing Astro applications. It correctly identifies security boundaries such as the difference between SSG and SSR attack surfaces.
- [SAFE]: No obfuscation, data exfiltration, or unauthorized command execution patterns were found. The skill references well-known documentation and official GitHub repositories for Astro and Decap CMS.
- [SAFE]: The instruction set encourages best practices such as least privilege for OAuth scopes, input validation with Zod, and proper environment variable hygiene (avoiding the PUBLIC_ prefix for secrets).
Audit Metadata