source-driven-development
Pass
Audited by Gen Agent Trust Hub on Jul 25, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is purely instructional and provides a methodology for 'Source-Driven Development'. It encourages best practices such as checking dependency versions (e.g., package.json), fetching official documentation from trusted sources (e.g., react.dev, MDN), and citing those sources in code.
- [DATA_EXFILTRATION]: While the skill mentions reading dependency files like package.json or requirements.txt, this is done solely to identify software versions for documentation lookups, which is a standard development workflow.
- [EXTERNAL_DOWNLOADS]: The skill recommends fetching official documentation from well-known and trusted organizations (Microsoft, Google, React, Django, etc.). These references are informative and do not involve downloading or executing untrusted scripts.
- [PROMPT_INJECTION]: There are no patterns found that attempt to override AI safety guidelines or bypass system prompts. The instructions are focused on maintaining technical correctness and transparency with the user.
Audit Metadata