nextjs-saas
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFE
Full Analysis
- [Prompt Injection] (SAFE): The instructions are strictly instructional and technical. No attempts to override agent behavior, bypass safety filters, or extract system prompts were found.
- [Data Exposure & Exfiltration] (SAFE): The code snippets demonstrate proper handling of authentication via Supabase and do not contain hardcoded credentials, API keys, or sensitive file path access. No unauthorized network operations were detected.
- [Remote Code Execution] (SAFE): No patterns of downloading and executing remote scripts (e.g., curl | bash) are present. The skill focuses on static documentation and code templates.
- [External Downloads] (SAFE): References standard, trustworthy industry technologies including Next.js, React, Tailwind CSS, and Supabase. No unverifiable or malicious dependencies are included.
- [Privilege Escalation] (SAFE): No commands involving sudo, administrative overrides, or sensitive system modifications are present.
- [Obfuscation] (SAFE): The content is written in clear, human-readable Markdown and TypeScript. No Base64, zero-width characters, or homoglyph-based obfuscation techniques were identified.
Audit Metadata