check-csrf-protection

Pass

Audited by Gen Agent Trust Hub on Jun 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is designed as a diagnostic template for security auditing. It provides educational examples of PHP vulnerabilities and uses standard grep commands to locate them in source code.
  • [SAFE]: No external package dependencies (npm, pip, etc.) or remote script downloads are included in the instructions.
  • [SAFE]: There are no attempts to access sensitive system paths (e.g., .ssh, .aws) or hardcoded credentials.
  • [SAFE]: The referenced URL (tomevault.io) is linked to the skill's distribution platform and author metadata, representing a legitimate vendor resource without suspicious behavior.
  • [SAFE]: The skill does not use obfuscation, hidden characters, or deceptive metadata to mask its intent.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 27, 2026, 11:04 AM
Security Audit — agent-trust-hub — check-csrf-protection