perfex-security

Pass

Audited by Gen Agent Trust Hub on Apr 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides instructions on how to write secure Perfex CRM module code. It covers security-critical patterns such as preventing open redirects via same-origin validation and implementing race-safe token consumption using atomic database updates.- [SAFE]: The documentation identifies and warns against insecure practices like logging PII, creating reverse-tabnabbing vulnerabilities with target='_blank', and bypassing CSRF protections.- [SAFE]: No obfuscation, data exfiltration, or malicious command execution patterns were found. The role-play instructions are professional and focused on improving the security posture of the generated code.- [EXTERNAL_DOWNLOADS]: The skill references official security documentation from Perfex CRM, OWASP, and CodeIgniter. These references are for educational purposes and do not involve the execution of remote code.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 22, 2026, 05:03 PM