django-access-review

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and analyze untrusted third-party Django source code during security reviews. Ingestion points: Django/Python source files (e.g., models.py, views.py) read via Read and Grep tools. Boundary markers: Absent. Capability inventory: Grep, Bash, and Task for executing search queries. Sanitization: Absent. Although a surface for indirect injection exists when the agent processes malicious code, the skill's instructions involve manual analysis and the shell commands are provided as static templates without unsafe interpolation of external data, making the risk negligible for its intended defensive purpose.
  • [SAFE]: No malicious patterns such as data exfiltration, credential harvesting, obfuscation, or persistence mechanisms were detected. The skill originates from a reputable source and aligns with industry-standard security review practices (e.g., OWASP).
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 08:43 PM
Security Audit — agent-trust-hub — django-access-review