openapi-spec-security-scan

Pass

Audited by Gen Agent Trust Hub on Jun 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill defines a set of clear, defensive rules (OAS-SEC, OAS-SRV, etc.) intended to audit API contracts for security misconfigurations. This is a benign, utility-focused skill that improves security posture.
  • [SAFE]: No suspicious command execution, remote code downloads, or network exfiltration patterns were detected. The skill uses standard YAML/JSON parsing instructions to analyze structural data.
  • [SAFE]: Hardcoded string patterns appearing in the documentation (such as dummy API keys) are used as negative examples to train the agent on what to detect and do not represent actual secrets or credential exposure.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 13, 2026, 12:44 PM
Security Audit — agent-trust-hub — openapi-spec-security-scan