saudi-procurement

Pass

Audited by Gen Agent Trust Hub on Jun 26, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches procurement and contract data from the official Saudi government Etimad developer portal (apiportal.etimad.sa).
  • [COMMAND_EXECUTION]: Provides curl command templates for the agent to execute API queries for government contracts and salary certificates.
  • [PROMPT_INJECTION]: The skill processes data from the Etimad API, which is an ingestion point for external content; security is maintained as the data originates from a trusted government source.
  • [CREDENTIALS_UNSAFE]: Employs environment variables (ETIMAD_SUBSCRIPTION_KEY) for API authentication, which is a recommended security practice.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 26, 2026, 01:16 PM
Security Audit — agent-trust-hub — saudi-procurement