example-zk-loan-application
Pass
Audited by Gen Agent Trust Hub on Jul 8, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is a comprehensive developer guide for building a specific type of decentralized application. It includes proper security considerations for the target platform, such as avoiding the use of spoofable public keys for authentication.
- [COMMAND_EXECUTION]: The skill provides standard developer commands for compiling smart contracts, building Node.js applications, and running a local proof server via Docker. All commands are routine for the described development workflow.
- [EXTERNAL_DOWNLOADS]: Refers to official Docker images (midnightntwrk/proof-server) and standard NPM packages from the Midnight Network ecosystem. These are well-known and legitimate resources for developers in this field.
- [DATA_EXFILTRATION]: No unauthorized data transmission was detected. The described network flow (communicating with a local or user-deployed attestation API) is a functional requirement for the ZK proving process described in the skill's purpose.
- [PROMPT_INJECTION]: The instructions focus on technical implementation and do not contain patterns intended to bypass AI safety guidelines or override agent behavior.
Audit Metadata