a2a-server

Pass

Audited by Gen Agent Trust Hub on Mar 31, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is purely instructional, providing architectural guidance and best practices for implementing an A2A server. It contains no malicious code or instructions to bypass safety protocols.- [EXTERNAL_DOWNLOADS]: The skill fetches technical specifications from https://a2a-protocol.org and recommends searching for SDKs within the a2aproject GitHub organization. These are recognized sources for the protocol described, and the downloads are for documentation purposes.- [DATA_EXFILTRATION]: No sensitive file access or unauthorized network transmissions were identified. The use of WebSearch and WebFetch is strictly for retrieving technical documentation.- [PROMPT_INJECTION]: There are no attempts to override system instructions, ignore safety filters, or extract sensitive internal prompts.- [COMMAND_EXECUTION]: While the skill lists Bash in its allowed tools, it does not instruct the agent to execute any dangerous shell commands. The instructions focus on guiding the developer through code implementation logic.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 31, 2026, 06:09 AM