secure-code-review

Pass

Audited by Gen Agent Trust Hub on Aug 26, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is designed as an educational and structural tool for security engineers. It contains reference material and static analysis checklists for identifying common software vulnerabilities such as SQL injection, XSS, and broken authentication.
  • [SAFE]: The skill implements strict safety instructions for the AI agent, specifically prohibiting the execution, evaluation, or interpretation of code being reviewed. It explicitly restricts its own tool usage to Read, Grep, and Glob, ensuring a read-only posture.
  • [SAFE]: All external links provided are to authoritative security resources such as OWASP, NIST, and MITRE CWE. There are no suspicious third-party downloads or remote script executions.
  • [SAFE]: The provided code snippets are inert examples of vulnerable and secure patterns used for pattern matching and comparison during reviews. They do not contain functional exploits or malicious payloads.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 26, 2026, 01:48 PM
Security Audit — agent-trust-hub — secure-code-review