tanstack-router
Pass
Audited by Gen Agent Trust Hub on Feb 18, 2026
Risk Level: SAFE
Full Analysis
- [Prompt Injection] (SAFE): No attempts to override AI instructions or bypass safety filters were found. The 'Always Do' and 'Never Do' sections are standard engineering constraints.- [Data Exfiltration] (SAFE): No hardcoded secrets, sensitive file paths, or unauthorized data transmission patterns. Data fetching examples are used for illustrative purposes.- [External Downloads] (SAFE): Installation commands refer to official packages from the TanStack ecosystem and standard validation libraries. No remote script execution (e.g., curl to bash) is present.- [Obfuscation] (SAFE): The content is clear, readable markdown and code without any hidden characters or encoded payloads.- [Indirect Prompt Injection] (LOW): The skill addresses handling untrusted data via URL parameters but implements strong security controls by mandating validation with schema libraries like Zod or Yup.
Audit Metadata