add-tool

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides documentation and code snippets to guide developers in creating new tools, containing no malicious instructions or executable code.
  • [SAFE]: Demonstrates secure configuration management by referencing environment variables (e.g., AIC_BASE_URL) rather than hardcoding sensitive endpoints or credentials.
  • [SAFE]: Encourages the use of robust input validation through the zod library and specific sanitization helpers like safePathSegmentSchema to prevent injection attacks.
  • [SAFE]: All external resource patterns, such as the x-forgerock-transactionid header and ForgeRock-specific utility functions, align with the legitimate infrastructure of the skill's author, Ping Identity.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 02:59 AM
Security Audit — agent-trust-hub — add-tool