br-hmac-signature

Pass

Audited by Gen Agent Trust Hub on Sep 9, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides standard and secure implementation patterns for HMAC-based authentication within a PHP environment.
  • [INDIRECT_PROMPT_INJECTION]: The skill defines authentication handlers for webhooks and REST requests, creating a data ingestion surface for external content. While the HMAC signature verifies the sender's identity and message integrity, the skill does not detail sanitization of the signed payload's content, which remains a necessary step for agents processing data from these endpoints.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 9, 2026, 07:06 PM
Security Audit — agent-trust-hub — br-hmac-signature