api-designer
Pass
Audited by Gen Agent Trust Hub on Sep 13, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to use standard industry tools via
npxfor API contract validation and mocking, specifically@redocly/cliand@stoplight/prism-cli. These tools are appropriate for the skill's stated purpose of API architecture. - [INDIRECT_PROMPT_INJECTION]: The skill has a surface area for processing untrusted content as it is designed to analyze, lint, and mock user-provided API specifications. This ingestion is guarded by the primary purpose of the skill to perform structural validation and design review.
- [SAFE]: No evidence of credential exfiltration, obfuscation, persistence mechanisms, or unauthorized privilege escalation was found across the skill's instructions and reference documentation.
Audit Metadata