carplay-ordering
Fail
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: CRITICALEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references and links to official Apple Developer documentation and a sample project ZIP file hosted on Apple's trusted infrastructure (developer.apple.com and docs-assets.developer.apple.com).
- [CREDENTIALS_UNSAFE]: Provides a template for JWT generation required for server-side push notifications. The implementation uses placeholder variables for sensitive material like private keys, following standard documentation best practices.
- [DATA_EXFILTRATION]: Documents the standard process for transmitting push notification tokens to a backend server to enable Live Activity updates, which is a required functional component of the described application type.
- [COMMAND_EXECUTION]: Includes instructions for manual configuration of Xcode build settings and project entitlement files, which are routine steps in the iOS development lifecycle.
Recommendations
- CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
Audit Metadata