igrantio-dcql-query-loyalty-card

Pass

Audited by Gen Agent Trust Hub on Aug 9, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references technical schemas hosted on GitHub (decentralised-dataexchange/verifiable-data-registry). These references are informational and point to the official registry for the data types described.
  • [DATA_EXFILTRATION]: The skill templates request various personal identifiers (email, phone, address). This data is retrieved from a user's wallet for loyalty card verification purposes. The skill includes guidance on data minimization to ensure only necessary claims are requested.
  • [PROMPT_INJECTION]: As the skill handles data returned from external wallets, there is an inherent surface for indirect prompt injection. This is a common risk for tools that process user-controlled data structures and should be managed during the verification phase.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 9, 2026, 01:57 PM
Security Audit — agent-trust-hub — igrantio-dcql-query-loyalty-card