symfony-yoandev-doctrine
Pass
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: No prompt injection patterns were detected. The instructions focus on technical implementation of the Symfony Doctrine persistence layer.
- [DATA_EXFILTRATION]: No attempts to access sensitive system files or credentials were found. The skill operates within the expected scope of a database abstraction layer.
- [REMOTE_CODE_EXECUTION]: No remote code execution patterns or untrusted downloads were identified. The skill uses standard Symfony console commands.
- [COMMAND_EXECUTION]: Shell commands are restricted to standard development tools like
php bin/consolefor migration and schema management. - [OBFUSCATION]: No obfuscated content, zero-width characters, or homoglyph attacks were detected.
- [DYNAMIC_EXECUTION]: The skill documents the use of Doctrine Query Language (DQL) projections and raw SQL. It correctly advises using parameter binding (
setParameter,$params) to prevent SQL injection, adhering to security best practices. - [INDIRECT_PROMPT_INJECTION]: The skill defines how the agent should generate and interact with code but does not ingest untrusted data from external sources during its own execution context.
Audit Metadata