webrtc-ios-integration
Pass
Audited by Gen Agent Trust Hub on Aug 29, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides technical guidance for WebRTC integration on iOS. It includes specific warnings against logging sensitive information like TURN credentials, SDP, or user identifiers, aligning with security best practices.
- [SAFE]: No obfuscation, data exfiltration patterns, or unauthorized credential access were detected in the instructions or reference materials.
- [SAFE]: The skill references standard iOS development tools (e.g., ios-deploy) and focuses on local workspace analysis within
~/workspace/webrtc, which is a typical environment for mobile development agents. - [INDIRECT_PROMPT_INJECTION]: While the skill ingests content from a local repository (
~/workspace/webrtc), this is its primary intended function for providing repo-grounded architecture guidance. No malicious use of this data surface was identified. - Ingestion points: Source files and headers within the local WebRTC checkout at
~/workspace/webrtc. - Boundary markers: The skill relies on natural language boundaries and context-specific reference reading.
- Capability inventory: Includes reading and analyzing source code to provide implementation advice in Swift and Objective-C.
- Sanitization: The skill does not explicitly describe sanitization, but it limits the scope of file reads to specific directories (e.g.,
sdk/objc/api) to minimize noise.
Audit Metadata