canva-deploy-integration
Pass
Audited by Gen Agent Trust Hub on May 20, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues detected.
- [SAFE]: Deployment instructions correctly leverage official platform command-line tools (vercel, fly, gcloud) for secure secret management, ensuring credentials are stored in environment variables or dedicated secret managers.
- [SAFE]: Code templates implement secure OAuth 2.0 patterns, specifically ensuring that sensitive operations like token exchange and storage are handled strictly server-side to prevent exposure to the client browser.
- [SAFE]: Hardcoded values in the documentation and scripts are generic placeholders (e.g., "OCAxxxxxxxxxxxxxxxx") rather than actual credentials.
Audit Metadata