oauth-flow-implementer

Pass

Audited by Gen Agent Trust Hub on Jun 16, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's primary function is to assist in developing standard authentication implementations. It provides guidance on best practices such as PKCE and secure token storage.
  • [PROMPT_INJECTION]: No override instructions, safety bypass attempts, or role-play injections were identified in the markdown content.
  • [DATA_EXPOSURE]: No hardcoded secrets, API keys, or private credential paths are present. The documentation explicitly advises against logging sensitive token data.
  • [COMMAND_EXECUTION]: While the skill frontmatter allows the use of the Bash tool, there are no predefined shell scripts or commands that execute automatically or use unsanitized input.
  • [EXTERNAL_DOWNLOADS]: No remote dependencies, package installations, or external script fetching operations were found in the analyzed files.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 16, 2026, 12:59 AM
Security Audit — agent-trust-hub — oauth-flow-implementer