claude-managed-agents-webhooks
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill provides infrastructure for ingesting external webhook data, creating a potential vector for indirect prompt injection.
- Ingestion points: External data is received via HTTP POST request bodies processed in
examples/fastapi/main.py,examples/express/src/index.js, andexamples/nextjs/app/webhooks/claude-managed-agents/route.ts. - Boundary markers: The skill implements HMAC-SHA256 signature verification following the Standard Webhooks specification and enforces a 5-minute validity window to prevent replay attacks.
- Capability inventory: The code templates are limited to logging event data; they do not include dangerous operations such as arbitrary code execution or file system writes.
- Sanitization: Payloads are validated for authenticity before being parsed as JSON and processed by the application logic.
Audit Metadata