gateway-client-imgly
Pass
Audited by Gen Agent Trust Hub on Jun 18, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill recommends fetching model discovery and endpoint documentation from the vendor's official domain at
https://gateway.img.ly/llms.txt. This is a neutral operation for retrieving live configuration from a known vendor source. - [SAFE]: Authentication logic relies on Clerk-managed session JWTs passed in the
Authorizationheader. The instructions correctly emphasize that API keys should not be used in the client-side code, aligning with security best practices for public-facing application surfaces.
Audit Metadata