unrestricted-file-upload-anti-pattern

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [NO_CODE] (SAFE): The skill consists entirely of markdown documentation and code examples intended for education and code review. There are no executable scripts or dynamic commands included in the package.
  • [DATA_EXFILTRATION] (SAFE): No network operations or sensitive file access patterns were detected. The file system paths mentioned (e.g., /var/www/uploads) are part of illustrative code examples, not active operations.
  • [EXTERNAL_DOWNLOADS] (SAFE): Links provided are to trusted security resources (OWASP, MITRE, PortSwigger) and a specific security education repository on GitHub (Arcanum-Sec/sec-context). No automated downloads or script executions are present.
  • [PROMPT_INJECTION] (SAFE): No instructions attempt to override agent behavior, bypass safety filters, or extract system prompts. The language is purely instructional and technical.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:34 PM