carplay-ordering

Fail

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: CRITICALEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references and links to official Apple Developer documentation and a sample project ZIP file hosted on Apple's trusted infrastructure (developer.apple.com and docs-assets.developer.apple.com).
  • [CREDENTIALS_UNSAFE]: Provides a template for JWT generation required for server-side push notifications. The implementation uses placeholder variables for sensitive material like private keys, following standard documentation best practices.
  • [DATA_EXFILTRATION]: Documents the standard process for transmitting push notification tokens to a backend server to enable Live Activity updates, which is a required functional component of the described application type.
  • [COMMAND_EXECUTION]: Includes instructions for manual configuration of Xcode build settings and project entitlement files, which are routine steps in the iOS development lifecycle.
Recommendations
  • CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Sep 15, 2026, 12:20 PM
Security Audit — agent-trust-hub — carplay-ordering