api-designer

Pass

Audited by Gen Agent Trust Hub on Apr 13, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: The skill is entirely composed of markdown documentation and YAML metadata. No executable scripts (.py, .js, .sh) or binaries are included, eliminating direct execution risks.
  • [SAFE]: All technical instructions and templates align with standard API design principles and security best practices, such as proper HTTP status code semantics and the use of RFC 7807 for error reporting.
  • [SAFE]: External links provided in the reference documentation point to official resources for industry standards, including the OpenAPI Initiative, the Apache Software Foundation, and the MIT license.
  • [NO_CODE]: The skill does not implement custom runtime logic or automate operations through scripts, relying instead on providing structured guidance to the agent.
  • [SAFE]: Mentions of command-line tools (openapi-generator-cli, swagger-cli, spectral) are contained within documentation blocks for user information and are not configured for autonomous execution by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 13, 2026, 03:54 PM
Security Audit — agent-trust-hub — api-designer