perfex-security
Pass
Audited by Gen Agent Trust Hub on Apr 22, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides instructions on how to write secure Perfex CRM module code. It covers security-critical patterns such as preventing open redirects via same-origin validation and implementing race-safe token consumption using atomic database updates.- [SAFE]: The documentation identifies and warns against insecure practices like logging PII, creating reverse-tabnabbing vulnerabilities with target='_blank', and bypassing CSRF protections.- [SAFE]: No obfuscation, data exfiltration, or malicious command execution patterns were found. The role-play instructions are professional and focused on improving the security posture of the generated code.- [EXTERNAL_DOWNLOADS]: The skill references official security documentation from Perfex CRM, OWASP, and CodeIgniter. These references are for educational purposes and do not involve the execution of remote code.
Audit Metadata