api-security-auth-pattern

Pass

Audited by Gen Agent Trust Hub on Apr 14, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides documentation and design patterns for API security based on industry standards like OAuth 2.0 and OWASP.- [CREDENTIALS_UNSAFE]: Example tokens and API keys provided in the documentation (e.g., 'eyJhbGci...', 'sk_live_AbCdEf...') are static placeholders for illustration and do not contain sensitive data or real credentials.- [EXTERNAL_DOWNLOADS]: The skill mentions the 'TestMu AI HyperExecute platform' for security testing, which is an official service provided by the skill's author (LambdaTest). No external code or scripts are downloaded or executed.- [COMMAND_EXECUTION]: No system commands or shell scripts are present or triggered by the instructions.- [DATA_EXFILTRATION]: There are no network requests or operations that send data to external or untrusted domains.- [PROMPT_INJECTION]: The instructions focus on assisting the user with API design and do not contain patterns intended to bypass agent safety filters or override system instructions.- [INDIRECT_PROMPT_INJECTION]: The skill describes a workflow to chain output to an 'API Designer' skill. This is a standard functional capability and does not involve the processing of untrusted external content.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 14, 2026, 09:31 AM
Security Audit — agent-trust-hub — api-security-auth-pattern