webrtc-ios-integration

Pass

Audited by Gen Agent Trust Hub on Aug 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides technical guidance for WebRTC integration on iOS. It includes specific warnings against logging sensitive information like TURN credentials, SDP, or user identifiers, aligning with security best practices.
  • [SAFE]: No obfuscation, data exfiltration patterns, or unauthorized credential access were detected in the instructions or reference materials.
  • [SAFE]: The skill references standard iOS development tools (e.g., ios-deploy) and focuses on local workspace analysis within ~/workspace/webrtc, which is a typical environment for mobile development agents.
  • [INDIRECT_PROMPT_INJECTION]: While the skill ingests content from a local repository (~/workspace/webrtc), this is its primary intended function for providing repo-grounded architecture guidance. No malicious use of this data surface was identified.
  • Ingestion points: Source files and headers within the local WebRTC checkout at ~/workspace/webrtc.
  • Boundary markers: The skill relies on natural language boundaries and context-specific reference reading.
  • Capability inventory: Includes reading and analyzing source code to provide implementation advice in Swift and Objective-C.
  • Sanitization: The skill does not explicitly describe sanitization, but it limits the scope of file reads to specific directories (e.g., sdk/objc/api) to minimize noise.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 29, 2026, 11:04 PM
Security Audit — agent-trust-hub — webrtc-ios-integration