apiiro-threat-model
Pass
Audited by Gen Agent Trust Hub on Mar 31, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill uses the official apiiro CLI tool, which is a resource owned by the vendor (apiiro). The command structure and options are standard for a security analysis tool.
- [SAFE]: No obfuscation, data exfiltration, or unauthorized command execution was detected in the skill instructions.
- [SAFE]: While the skill processes external design specifications which could technically contain indirect prompt injections, this is the intended primary purpose of the tool (security analysis of provided input) and no exploitable capabilities were identified within the skill's logic.
Audit Metadata