openapi-specification

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is entirely documentation-based, providing patterns and workflows for API specification management. No executable code, hidden payloads, or malicious instructions were detected.
  • [COMMAND_EXECUTION]: The documentation references standard CLI tools for API linting (Spectral, Redocly) and mocking (Prism). These are well-known industry-standard tools used for local development and CI/CD pipelines.
  • [INDIRECT_PROMPT_INJECTION]: While the skill involves processing OpenAPI specifications (which represent a potential attack surface if specifications originate from untrusted sources), the risk is negligible as the skill provides guidelines for manual or standard tool-based validation rather than automated execution of untrusted payloads.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 12:40 PM
Security Audit — agent-trust-hub — openapi-specification