contentstack-kickstart

Pass

Audited by Gen Agent Trust Hub on Jul 16, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill integrates official Contentstack SDKs (@contentstack/delivery-sdk and @contentstack/live-preview-utils) for content management and preview features, which are trusted vendor resources.
  • [SAFE]: Sensitive configuration data, such as API keys and delivery tokens, are managed through environment variables rather than being hardcoded, following security best practices.
  • [SAFE]: The logic for fetching and rendering content (e.g., getPage) describes standard CMS integration without introducing dynamic execution of untrusted data or command injection vulnerabilities.
  • [SAFE]: All external references, including the kickstart-stack-seed repository, originate from the official vendor (Contentstack) and are consistent with the skill's stated purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 16, 2026, 08:57 PM
Security Audit — agent-trust-hub — contentstack-kickstart