mobile-developer

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill contains instructional content, checklists, and architectural guidelines for mobile application development. No malicious code, obfuscation, or injection attempts were detected.
  • [DATA_EXPOSURE]: Mentions of sensitive components such as '.env' files, Keychain, and EncryptedSharedPreferences are used exclusively within the context of teaching best practices for mobile app security, rather than attempting to access host credentials.
  • [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to review project context and native modules. While this represents a surface for indirect prompt injection from codebase files, the skill does not include any autonomous command execution or file-writing tools that would create a high-risk exploit path.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 10:53 AM
Security Audit — agent-trust-hub — mobile-developer