check-input-validation
Pass
Audited by Gen Agent Trust Hub on Mar 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues were detected. The skill is purely informational, providing patterns and best practices for auditing PHP applications.
- [PROMPT_INJECTION]: The instructions focus on static code analysis and do not contain any attempts to override model behavior, bypass safety filters, or extract system prompts.
- [DATA_EXFILTRATION]: There are no network operations, hardcoded credentials, or accesses to sensitive system files. The network-related examples are contained within static PHP code snippets for educational purposes.
- [REMOTE_CODE_EXECUTION]: The skill does not download external scripts, install third-party packages, or use dynamic execution functions like eval() or exec().
- [COMMAND_EXECUTION]: While the skill mentions 'Grep' patterns, these are provided as instructional text for the user/agent to understand what to look for, rather than being part of an automated execution script.
Audit Metadata