frontend-api-contracts
Pass
Audited by Gen Agent Trust Hub on Aug 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a set of instructional guidelines for an AI agent to design documentation and type contracts for tRPC APIs. It does not contain executable scripts, network operations, or sensitive data access patterns.- [PROMPT_INJECTION]: The skill includes a pattern for writing documentation to a path based on a variable
<feature>derived from user input. - Ingestion points: The user's input regarding the feature being designed (SKILL.md).
- Boundary markers: None present in the instructions.
- Capability inventory: File system write access to the
.claude/docs/directory (SKILL.md). - Sanitization: The skill lacks explicit instructions to sanitize the
<feature>variable; however, this represents standard documentation functionality and path safety is typically managed by the agent platform's runtime environment.
Audit Metadata