mass-assignment-anti-pattern
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE] (SAFE): The skill is purely instructional and contains no malicious intent or patterns. It correctly identifies and provides remediation for a common security vulnerability.
- [NO_CODE] (SAFE): The skill consists solely of Markdown documentation and code snippets intended for education and manual code review. It does not include or execute any scripts, binaries, or automated workflows.
- [COMMAND_EXECUTION] (SAFE): Provides example command-line strings for
ripgrep(rg) andcurlto help developers detect and test for vulnerabilities. These are static text examples and are not executed by the skill itself. - [EXTERNAL_DOWNLOADS] (SAFE): Includes links to trusted security documentation such as OWASP, CWE, and PortSwigger for further learning. No automated remote code downloads or installations are present.
Audit Metadata