axum-agents-api-review
Pass
Audited by Gen Agent Trust Hub on Aug 13, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill consists of documentation and structured checklists intended for code auditing. It does not include functional scripts, binaries, or network-enabled logic.
- [NO_CODE]: No executable files, shell scripts, or installation configurations are present in the skill package.
- [SAFE]: While the reference materials include examples of hardcoded credentials (e.g., JWT secrets), these are explicitly labeled as examples of security anti-patterns for the auditor to detect and do not represent a leak of actual system secrets.
- [SAFE]: The skill instructs the agent to analyze external source code; while this is a theoretical surface for indirect prompt injection, the skill lacks the capabilities (such as file writes or network access) that would be necessary to exploit such an injection.
Audit Metadata