erpnext-database

Pass

Audited by Gen Agent Trust Hub on Mar 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides educational content and coding patterns for the Frappe/ERPNext framework. It does not contain executable scripts, automated installation routines, or external network requests.
  • [SAFE]: The documentation explicitly includes security warnings regarding SQL injection, providing clear 'DO' and 'DON'T' examples to promote the use of parameterized queries and the Query Builder API.
  • [SAFE]: The skill includes examples for implementing permission checks using the framework's built-in frappe.has_permission system, ensuring data access respects the application's security model.
  • [SAFE]: Several reference files contain static 404 error messages from the GitHub API, which appear to be artifacts of a failed documentation export but pose no security risk to the agent or environment.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 20, 2026, 05:36 PM