cloudflare-turnstile

Pass

Audited by Gen Agent Trust Hub on Mar 10, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The scripts/check-csp.sh script uses curl to fetch HTTP headers from external URLs for security policy validation.\n- [EXTERNAL_DOWNLOADS]: Implementation templates reference the official Cloudflare CDN at challenges.cloudflare.com to load the Turnstile client library and perform site verification.\n- [COMMAND_EXECUTION]: scripts/check-csp.sh executes shell commands including curl, grep, and sed to analyze Content Security Policy headers from provided URLs.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 10, 2026, 03:49 AM