openapi-risk

Pass

Audited by Gen Agent Trust Hub on Jul 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns detected. The skill functions as a documentation and routing layer for the official OpenAPI Risk API.
  • [DATA_EXFILTRATION]: While the skill accesses sensitive personal and financial information (credit scores, CRIF reports, fiscal codes), this behavior is the primary intended purpose of the service. All network communication is directed to the vendor's official domain (risk.openapi.com). The skill explicitly warns about GDPR compliance and the handling of personal data.
  • [PROMPT_INJECTION]: No evidence of prompt injection or instructions designed to override agent safety protocols.
  • [EXTERNAL_DOWNLOADS]: The skill references a OpenAPI Specification (OAS) JSON file hosted on the vendor's official console domain for full documentation, which is a standard and safe practice.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 1, 2026, 04:39 PM
Security Audit — agent-trust-hub — openapi-risk