gkmex-api-integration

Pass

Audited by Gen Agent Trust Hub on Sep 2, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references the official gkmex Python package and the @gstcranes/gkmex Node.js package for interacting with the Gkmex API. These resources are consistent with the vendor's established identity.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process external data retrieved from the Gkmex API, which constitutes a potential ingestion point for untrusted data. Ingestion points: Gkmex REST API endpoints and SDK methods (SKILL.md). Boundary markers: None. Capability inventory: No file system writes or shell command executions are present in the provided integration logic. Sanitization: Not explicitly defined.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 2, 2026, 12:55 PM
Security Audit — agent-trust-hub — gkmex-api-integration