api-designer

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to use standard industry tools via npx for API contract validation and mocking, specifically @redocly/cli and @stoplight/prism-cli. These tools are appropriate for the skill's stated purpose of API architecture.
  • [INDIRECT_PROMPT_INJECTION]: The skill has a surface area for processing untrusted content as it is designed to analyze, lint, and mock user-provided API specifications. This ingestion is guarded by the primary purpose of the skill to perform structural validation and design review.
  • [SAFE]: No evidence of credential exfiltration, obfuscation, persistence mechanisms, or unauthorized privilege escalation was found across the skill's instructions and reference documentation.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 03:48 PM
Security Audit — agent-trust-hub — api-designer