openapi-specification
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is entirely documentation-based, providing patterns and workflows for API specification management. No executable code, hidden payloads, or malicious instructions were detected.
- [COMMAND_EXECUTION]: The documentation references standard CLI tools for API linting (Spectral, Redocly) and mocking (Prism). These are well-known industry-standard tools used for local development and CI/CD pipelines.
- [INDIRECT_PROMPT_INJECTION]: While the skill involves processing OpenAPI specifications (which represent a potential attack surface if specifications originate from untrusted sources), the risk is negligible as the skill provides guidelines for manual or standard tool-based validation rather than automated execution of untrusted payloads.
Audit Metadata