check-csrf-protection
Pass
Audited by Gen Agent Trust Hub on Jun 27, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is designed as a diagnostic template for security auditing. It provides educational examples of PHP vulnerabilities and uses standard grep commands to locate them in source code.
- [SAFE]: No external package dependencies (npm, pip, etc.) or remote script downloads are included in the instructions.
- [SAFE]: There are no attempts to access sensitive system paths (e.g., .ssh, .aws) or hardcoded credentials.
- [SAFE]: The referenced URL (tomevault.io) is linked to the skill's distribution platform and author metadata, representing a legitimate vendor resource without suspicious behavior.
- [SAFE]: The skill does not use obfuscation, hidden characters, or deceptive metadata to mask its intent.
Audit Metadata