igrantio-dcql-postal-codes
Pass
Audited by Gen Agent Trust Hub on Jul 20, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists entirely of instructional content and configuration templates (JSON) for credential querying. No scripts, binaries, or automated execution mechanisms are present.
- [SAFE]: External references are limited to official iGrant.io documentation and standard example domains, which are used to provide context for the implementation.
- [SAFE]: The instructions explicitly include a security best practice by directing the user to perform server-side re-validation of claims rather than relying on the wallet's local matching, which prevents potential client-side enforcement bypasses.
Audit Metadata