claude-managed-agents-webhooks

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill provides infrastructure for ingesting external webhook data, creating a potential vector for indirect prompt injection.
  • Ingestion points: External data is received via HTTP POST request bodies processed in examples/fastapi/main.py, examples/express/src/index.js, and examples/nextjs/app/webhooks/claude-managed-agents/route.ts.
  • Boundary markers: The skill implements HMAC-SHA256 signature verification following the Standard Webhooks specification and enforces a 5-minute validity window to prevent replay attacks.
  • Capability inventory: The code templates are limited to logging event data; they do not include dangerous operations such as arbitrary code execution or file system writes.
  • Sanitization: Payloads are validated for authenticity before being parsed as JSON and processed by the application logic.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 07:08 AM
Security Audit — agent-trust-hub — claude-managed-agents-webhooks