add-tool
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides documentation and code snippets to guide developers in creating new tools, containing no malicious instructions or executable code.
- [SAFE]: Demonstrates secure configuration management by referencing environment variables (e.g.,
AIC_BASE_URL) rather than hardcoding sensitive endpoints or credentials. - [SAFE]: Encourages the use of robust input validation through the
zodlibrary and specific sanitization helpers likesafePathSegmentSchemato prevent injection attacks. - [SAFE]: All external resource patterns, such as the
x-forgerock-transactionidheader and ForgeRock-specific utility functions, align with the legitimate infrastructure of the skill's author, Ping Identity.
Audit Metadata