django-access-review
Pass
Audited by Gen Agent Trust Hub on Aug 9, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues or malicious patterns were identified in the skill instructions. The content is purely educational and analytical.
- [COMMAND_EXECUTION]: The skill utilizes the
grepcommand to search for specific authorization patterns in a local codebase. This is a standard and safe use of command execution for software auditing purposes. - [PROMPT_INJECTION]: Because the skill is designed to analyze external source code, it possesses a surface for indirect prompt injection where instructions hidden in the code could potentially influence the agent. Ingestion points: Django project source code. Boundary markers: The skill does not define specific isolation markers for the code being read. Capability inventory: Terminal access for
grepsearches. Sanitization: The methodology relies on human-in-the-loop or logical tracing rather than automated execution of the code.
Audit Metadata