code-quality-best-practices
Pass
Audited by Gen Agent Trust Hub on Mar 4, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: No security issues were detected. All content consists of educational documentation and code examples that are not executed by the agent.\n- [NO_CODE]: The skill package contains no scripts (.sh, .py, .js, .ts), binaries, or executable configuration files. It is entirely composed of Markdown files.\n- [PROMPT_INJECTION]: The skill body consists of software engineering principles. No instructions attempting to override agent behavior, bypass safety filters, or extract system prompts were found.\n- [CREDENTIALS_UNSAFE]: No hardcoded credentials, API keys, or secrets are present. Example code snippets correctly use environment variable references (e.g., process.env.STRIPE_KEY) as placeholders in bad practice demonstrations.\n- [EXTERNAL_DOWNLOADS]: There are no commands or instructions to download external software, scripts, or packages. The skill relies entirely on its local reference files.\n- [DATA_EXFILTRATION]: No network capabilities or exfiltration vectors were identified. Code examples showing network operations are for architectural illustration only and are not part of an executable script.
Audit Metadata