axum-agents-api-review

Pass

Audited by Gen Agent Trust Hub on Aug 13, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: The skill consists of documentation and structured checklists intended for code auditing. It does not include functional scripts, binaries, or network-enabled logic.
  • [NO_CODE]: No executable files, shell scripts, or installation configurations are present in the skill package.
  • [SAFE]: While the reference materials include examples of hardcoded credentials (e.g., JWT secrets), these are explicitly labeled as examples of security anti-patterns for the auditor to detect and do not represent a leak of actual system secrets.
  • [SAFE]: The skill instructs the agent to analyze external source code; while this is a theoretical surface for indirect prompt injection, the skill lacks the capabilities (such as file writes or network access) that would be necessary to exploit such an injection.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 13, 2026, 03:34 AM
Security Audit — agent-trust-hub — axum-agents-api-review