skills/semgrep/skills/llm-security/Gen Agent Trust Hub

llm-security

Pass

Audited by Gen Agent Trust Hub on Mar 8, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: Documentation-only content. The skill consists exclusively of markdown files providing educational security guidelines and does not contain any executable scripts, binaries, or active code within the skill package.
  • [SAFE]: Educational code examples. All Python, JavaScript, and SQL code provided in the 'rules/' directory are contained within markdown code blocks intended for reference; they demonstrate security vulnerabilities and their remediations without being executed by the agent loader.
  • [SAFE]: Trusted sources and references. The skill accurately references authoritative security frameworks and organizations including OWASP, MITRE ATLAS, and NIST AI RMF, as well as the author's own official domain (semgrep.dev).
  • [SAFE]: No malicious patterns. Analysis found no evidence of prompt injection, data exfiltration, obfuscation, or persistence mechanisms within the skill instructions, code examples, or metadata.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 8, 2026, 12:04 PM