kudosity-whatsapp

Pass

Audited by Gen Agent Trust Hub on Jul 30, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides documentation and implementation details for a legitimate messaging service. All identified external resources and API endpoints belong to the verified author's infrastructure.- [EXTERNAL_DOWNLOADS]: The skill includes a reference to a GitHub repository (github.com/kudosity/ai-agent-examples) for a working example. This is a trusted source belonging to the skill author.- [CREDENTIALS_UNSAFE]: The skill correctly uses a placeholder ({KUDOSITY_API_KEY}) for authentication, following best practices for secret management.- [DATA_EXFILTRATION]: Communication is directed to the vendor's official API domain (api.transmitmessage.com). No unauthorized data exfiltration patterns were observed.- [INDIRECT_PROMPT_INJECTION]: The skill facilitates interaction with external API responses and webhooks. While this creates a potential attack surface for indirect prompt injection, it is managed by the agent's internal safety protocols and the skill itself does not contain exploitable logic.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 30, 2026, 01:03 AM
Security Audit — agent-trust-hub — kudosity-whatsapp