discover-portal-apis
Pass
Audited by Gen Agent Trust Hub on Jun 21, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill describes a legitimate discovery workflow for Anypoint API Experience Hub, allowing users to browse and search for published API assets.
- [SAFE]: No hardcoded credentials, API keys, or unauthorized data exfiltration patterns were detected. The skill correctly instructs users on prerequisites such as requiring a valid Bearer token for authentication.
- [SAFE]: The skill does not perform any remote code execution, dynamic code generation, or download untrusted dependencies. All operations are restricted to specific, named API calls within the MuleSoft ecosystem.
- [SAFE]: While the skill retrieves external documentation and terms of use (which could theoretically contain indirect prompt injection), this is the primary and intended purpose of the skill. The skill itself does not have any sensitive write capabilities or execution tools that could be abused if such text were encountered.
Audit Metadata