secure-oauth-oidc

Pass

Audited by Gen Agent Trust Hub on Jul 19, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [PROMPT_INJECTION]: No attempts to override agent behavior, bypass safety filters, or extract system prompts were detected. The skill's instructions are focused on guiding the AI through a structured OAuth security review process.
  • [DATA_EXFILTRATION]: No hardcoded credentials (API keys, tokens) or sensitive file path access were found. The skill specifically advises redacting sensitive tokens and credentials from review outputs.
  • [REMOTE_CODE_EXECUTION]: There are no remote script downloads (e.g., curl-to-bash) or patterns of dynamic code execution.
  • [COMMAND_EXECUTION]: The skill does not invoke any shell commands or system binaries. Mentions of CLI tools and search terms are for the user's information during manual review.
  • [NO_CODE]: The skill is comprised entirely of Markdown guidelines and YAML metadata. It provides educational and procedural content without shipping executable logic, reducing the technical attack surface to near zero.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 19, 2026, 05:16 PM
Security Audit — agent-trust-hub — secure-oauth-oidc