contract-first
Pass
Audited by Gen Agent Trust Hub on Jul 26, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is a documentation-focused resource providing workflow guidance for API collaboration. No malicious code, obfuscation, or unauthorized commands were detected.
- [REMOTE_CODE_EXECUTION]: The skill provides defensive recommendations for using API generators, such as restricting network access and running with least privilege to prevent potential RCE via untrusted tools.
- [PROMPT_INJECTION]: The documentation warns against treating embedded contract content as instructions, which helps mitigate indirect prompt injection risks associated with processing external schema artifacts.
Audit Metadata