skills/microsoft/hve-core/owasp-mcp/Gen Agent Trust Hub

owasp-mcp

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFE
Full Analysis
  • Informational Knowledge Base: The skill is composed exclusively of reference documentation in Markdown format. It does not define tools, request network access, or include scripts, posing no direct operational risk to the execution environment.
  • Educational Security Examples: The skill contains literal examples of security vulnerabilities, such as prompt injection strings and command injection payloads (e.g., in references/06-prompt-injection-contextual-payloads.md). These are presented strictly as 'Example attack scenarios' to help users identify and prevent such attacks in their own implementations.
  • Security Guidance Alignment: The content follows industry-standard security recommendations from OWASP, focusing on critical areas like credential hygiene, access control, and supply chain integrity.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 06:55 AM
Security Audit — agent-trust-hub — owasp-mcp