code-quality-best-practices

Pass

Audited by Gen Agent Trust Hub on Mar 4, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: No security issues were detected. All content consists of educational documentation and code examples that are not executed by the agent.\n- [NO_CODE]: The skill package contains no scripts (.sh, .py, .js, .ts), binaries, or executable configuration files. It is entirely composed of Markdown files.\n- [PROMPT_INJECTION]: The skill body consists of software engineering principles. No instructions attempting to override agent behavior, bypass safety filters, or extract system prompts were found.\n- [CREDENTIALS_UNSAFE]: No hardcoded credentials, API keys, or secrets are present. Example code snippets correctly use environment variable references (e.g., process.env.STRIPE_KEY) as placeholders in bad practice demonstrations.\n- [EXTERNAL_DOWNLOADS]: There are no commands or instructions to download external software, scripts, or packages. The skill relies entirely on its local reference files.\n- [DATA_EXFILTRATION]: No network capabilities or exfiltration vectors were identified. Code examples showing network operations are for architectural illustration only and are not part of an executable script.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 4, 2026, 07:53 PM