skills/buildkite/skills/buildkite-api/Gen Agent Trust Hub

buildkite-api

Pass

Audited by Gen Agent Trust Hub on Apr 30, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of technical documentation and code samples for interacting with Buildkite APIs. No malicious code, obfuscation, or unauthorized access patterns were found.\n- [COMMAND_EXECUTION]: Code snippets use standard utilities like curl and jq for API calls to official Buildkite endpoints (api.buildkite.com, graphql.buildkite.com). These domains belong to the verified vendor 'buildkite'.\n- [CREDENTIALS_UNSAFE]: Authentication is demonstrated using environment variables and token placeholders. The documentation includes security best practices, such as suggesting minimal token scopes and timing-safe webhook signature verification.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 30, 2026, 01:56 AM
Security Audit — agent-trust-hub — buildkite-api