csrf-protection
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides legitimate security implementations for CSRF protection using industry-standard libraries and methods.- [SAFE]: Node.js implementation uses cryptographically secure token generation and timing-safe comparisons for validation.- [SAFE]: Python implementation leverages established libraries like Flask-WTF and provides a secure double-submit cookie pattern.- [SAFE]: Recommended cookie configurations follow best practices for protecting session identifiers and CSRF tokens.
Audit Metadata