appfolio-local-dev-loop

Pass

Audited by Gen Agent Trust Hub on Sep 9, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs standard, well-known development dependencies from the NPM registry.
  • [EXTERNAL_DOWNLOADS]: The skill facilitates network interaction with the official AppFolio Stack API for integration testing.
  • [INDIRECT_PROMPT_INJECTION]: The skill has a potential surface for indirect injection when processing responses from the AppFolio API. Ingestion points: External data is ingested via API responses using the axios library in the testing workflow. Boundary markers: The skill provides explicit instructions to the agent to verify environment boundaries and stop if data redaction or fixture validation is unverified. Capability inventory: The skill utilizes Bash, Write, and Edit tools. Sanitization: The primary function of the skill is to provide synthetic mock fixtures and telemetry redaction to ensure privacy and safety during development.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 9, 2026, 03:41 AM
Security Audit — agent-trust-hub — appfolio-local-dev-loop