frontend-api-contracts

Pass

Audited by Gen Agent Trust Hub on Aug 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a set of instructional guidelines for an AI agent to design documentation and type contracts for tRPC APIs. It does not contain executable scripts, network operations, or sensitive data access patterns.- [PROMPT_INJECTION]: The skill includes a pattern for writing documentation to a path based on a variable <feature> derived from user input.
  • Ingestion points: The user's input regarding the feature being designed (SKILL.md).
  • Boundary markers: None present in the instructions.
  • Capability inventory: File system write access to the .claude/docs/ directory (SKILL.md).
  • Sanitization: The skill lacks explicit instructions to sanitize the <feature> variable; however, this represents standard documentation functionality and path safety is typically managed by the agent platform's runtime environment.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 2, 2026, 09:40 PM
Security Audit — agent-trust-hub — frontend-api-contracts