webhook-integration-patterns
Pass
Audited by Gen Agent Trust Hub on Apr 19, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: The skill provides comprehensive educational content and code snippets that adhere to security best practices. This includes robust signature verification using HMAC-SHA256 with constant-time comparison to prevent timing attacks, and timestamp validation to mitigate replay attacks.
- [COMMAND_EXECUTION]: The documentation references well-known development tools and CLI utilities, such as ngrok, Cloudflare Tunnel, Stripe CLI, and GitHub CLI. These are standard tools used for local development and testing.
- [EXTERNAL_DOWNLOADS]: The skill mentions downloading and installing legitimate development utilities from trusted package managers and official sources (e.g., npm, Homebrew).
Audit Metadata