specifying-constraints

Pass

Audited by Gen Agent Trust Hub on Aug 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists entirely of high-level instructional markdown providing best practices for Laravel development, such as maintaining clear boundaries for validation and authorization.
  • [DATA_EXPOSURE]: The instructions explicitly promote security best practices by advising the agent to keep credentials, secrets, and internal URLs out of reusable standards and to ensure logs do not expose sensitive data.
  • [EXTERNAL_DOWNLOADS]: The skill mentions adapting guidelines from a public repository (jpcaparas/superpowers-laravel), but it does not perform any downloads or include third-party code; it only references the source for conceptual alignment.
  • [INDIRECT_PROMPT_INJECTION]: The workflow involves detecting project conventions and versions from the local environment to provide tailored guidance. While this represents a data ingestion surface, the risk is negligible as it is used for standard architectural context.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 4, 2026, 02:32 PM
Security Audit — agent-trust-hub — specifying-constraints