canva-core-workflow-a

Pass

Audited by Gen Agent Trust Hub on May 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements a design workflow using the official Canva REST API (v1) via legitimate endpoints at api.canva.com and canva.dev.
  • [SAFE]: No hardcoded credentials or secrets were found; authentication is correctly documented as being handled via a separate prerequisite setup.
  • [SAFE]: There is no evidence of obfuscation, persistence mechanisms, or unauthorized privilege escalation in the instructions or code samples.
  • [SAFE]: The skill uses standard API practices, including rate limiting documentation and status polling for asynchronous export jobs.
Audit Metadata
Risk Level
SAFE
Analyzed
May 20, 2026, 12:00 AM
Security Audit — agent-trust-hub — canva-core-workflow-a