mass-assignment-anti-pattern

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE] (SAFE): The skill is purely instructional and contains no malicious intent or patterns. It correctly identifies and provides remediation for a common security vulnerability.
  • [NO_CODE] (SAFE): The skill consists solely of Markdown documentation and code snippets intended for education and manual code review. It does not include or execute any scripts, binaries, or automated workflows.
  • [COMMAND_EXECUTION] (SAFE): Provides example command-line strings for ripgrep (rg) and curl to help developers detect and test for vulnerabilities. These are static text examples and are not executed by the skill itself.
  • [EXTERNAL_DOWNLOADS] (SAFE): Includes links to trusted security documentation such as OWASP, CWE, and PortSwigger for further learning. No automated remote code downloads or installations are present.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:41 PM