procore-core-workflow-a

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides Python code snippets for interacting with the Procore API using the standard requests library. The logic implements common RFI workflows including creation, response, tracking, and closing, which matches the skill's stated purpose.
  • [SAFE]: No sensitive data exposure or exfiltration patterns were found. The code uses placeholder variables like BASE and headers for API interaction, following best practices for avoiding hardcoded credentials.
  • [SAFE]: There are no signs of obfuscation, hidden URLs, or prompt injection. The instructions are clear and descriptive, focusing entirely on legitimate construction management tasks.
  • [SAFE]: No remote code execution or suspicious dependency patterns are present. The skill relies on well-known libraries and standard API communication.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 09:56 AM
Security Audit — agent-trust-hub — procore-core-workflow-a