nest-zod-runtime
Pass
Audited by Gen Agent Trust Hub on Aug 14, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: No patterns were detected that attempt to override system prompts, bypass safety guidelines, or extract internal instructions.
- [DATA_EXFILTRATION]: No network operations, hardcoded credentials, or access to sensitive local file paths (like SSH keys or environment files) were found.
- [REMOTE_CODE_EXECUTION]: The skill does not perform any remote script downloads, piped execution, or dynamic code evaluation.
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process existing project files (controllers and schemas) to guide code updates. It contains no mechanisms for ingesting untrusted external data that could lead to indirect injection.
- [DYNAMIC_EXECUTION]: All code examples provided are static templates for NestJS development and do not involve runtime code generation, compilation, or unsafe deserialization.
Audit Metadata