ringcentral-webhooks
Pass
Audited by Gen Agent Trust Hub on Jul 25, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides standard boilerplate implementations for RingCentral webhooks in Next.js, FastAPI, and Express. It follows security best practices by implementing timing-safe string comparisons for verification tokens.
- [EXTERNAL_DOWNLOADS]: The documentation references the Hookdeck CLI tool for local tunneling and testing. This is a well-known service provided by the skill's author and is used for its intended purpose of webhook development.
- [DATA_EXFILTRATION]: No unauthorized data access or exfiltration patterns were detected. Sensitive configuration is handled via environment variables as per industry standards.
- [PROMPT_INJECTION]: No instructions attempting to override agent behavior or bypass safety filters were found in the skill content.
- [COMMAND_EXECUTION]: The skill does not contain any suspicious shell command execution or privilege escalation attempts.
- [REMOTE_CODE_EXECUTION]: No dynamic code execution, unsafe deserialization, or remote script execution patterns were identified.
Audit Metadata