better-auth-best-practices

Pass

Audited by Gen Agent Trust Hub on Feb 18, 2026

Risk Level: SAFE
Full Analysis
  • [Prompt Injection] (SAFE): No instructions designed to override agent behavior or bypass safety protocols were detected. The content is strictly instructional.- [Data Exposure & Exfiltration] (SAFE): The skill references the use of environment variables like BETTER_AUTH_SECRET but does not contain patterns for accessing sensitive local files or exfiltrating data to external servers.- [Obfuscation] (SAFE): The text is plain markdown without encoded strings, zero-width characters, or homoglyphs.- [Unverifiable Dependencies] (SAFE): The skill references official CLI tools via @better-auth/cli@latest for migration and generation tasks. No suspicious or unversioned third-party scripts are executed.- [Privilege Escalation] (SAFE): No commands related to privilege escalation (sudo, chmod) or system-level modifications were found.- [Persistence Mechanisms] (SAFE): The skill does not attempt to create cron jobs, modify shell profiles, or establish startup persistence.- [Indirect Prompt Injection] (SAFE): As a static integration guide, it does not ingest untrusted data into an execution environment or have a vulnerability surface for indirect injection.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 18, 2026, 01:23 PM