http-rest-fundamentals-weapon
Pass
Audited by Gen Agent Trust Hub on Jul 25, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill consists entirely of Markdown documentation, guides, and templates. It contains no executable scripts (Python, JavaScript, Shell) or binaries.
- [NO_CODE]: There are no active code components within the skill. Its primary function is to provide the AI agent with a knowledge base for evaluating third-party API configurations against HTTP protocol standards (RFC 9110, 9113, 9114, etc.).
- [EXTERNAL_DOWNLOADS]: The skill references numerous external technical resources, including the IETF RFC Editor, MDN Web Docs, and various reputable technology blogs (e.g., Cloudflare, HTTP Toolkit). These are well-known technical references and do not involve the download of executable content or dependencies.
- [PROMPT_INJECTION]: No evidence of prompt injection, role-play bypasses, or instructions to ignore safety guidelines was found. The directives provided are strictly limited to the technical scope of HTTP auditing.
- [DATA_EXFILTRATION]: No patterns indicative of data exfiltration or sensitive file access were detected. The skill specifically instructs the agent to hand off authentication-related audits to a separate 'auth-guardian', minimizing the handling of sensitive credentials.
- [DYNAMIC_CONTEXT_INJECTION]: The SKILL.md file does not utilize any dynamic shell execution syntax (such as !
command).
Audit Metadata