ce-webhooks

Pass

Audited by Gen Agent Trust Hub on Mar 18, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides instructional content and code snippets for implementing webhooks. It does not contain executable scripts, malicious commands, or automated tasks.
  • [EXTERNAL_DOWNLOADS]: All external URLs point to the official commercengine.io documentation and the author's GitHub repository. These are verified vendor resources for the 'commercengine' author.
  • [PROMPT_INJECTION]: No evidence of prompt injection, role-play bypasses, or instructions to ignore safety guidelines was found in the documentation or metadata.
  • [CREDENTIALS_UNSAFE]: The skill demonstrates security best practices by advising the use of environment variables for secrets (CE_WEBHOOK_SECRET) and implementing timing-safe signature verification.
  • [DATA_EXFILTRATION]: There are no patterns suggesting unauthorized data access or transmission to third-party domains.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 18, 2026, 11:30 AM
Security Audit — agent-trust-hub — ce-webhooks