canva-manager

Pass

Audited by Gen Agent Trust Hub on Apr 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill enforces a 'PLAN-CLARIFY-IMPLEMENT' workflow, ensuring that the agent provides a detailed proposal and obtains explicit user approval before performing any modifications to the Canva account.
  • [SAFE]: Secret management is handled securely through the use of a local .env file for storing API client IDs and OAuth tokens, which prevents hardcoding of sensitive credentials.
  • [COMMAND_EXECUTION]: The skill utilizes local Python scripts within a virtual environment to interact with the Canva API. This approach ensures that operations are performed using controlled, local code rather than remote or untrusted scripts.
  • [SAFE]: All external links and resources point to official Canva developer documentation and portals, confirming the legitimacy of the integration source.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 20, 2026, 12:43 AM
Security Audit — agent-trust-hub — canva-manager