oauth-scopes-handling
Pass
Audited by Gen Agent Trust Hub on Jul 18, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill provides documentation on OAuth scope handling for MCP clients, adhering to standard security protocols such as RFC 6750 for WWW-Authenticate headers.
- [SAFE]: The instructions explicitly promote security best practices, specifically the principle of least privilege, by advising developers to request only necessary scopes.
- [NO_CODE]: The skill contains no executable scripts, shell commands, or external dependencies. It serves purely as an architectural and implementation guide.
- [SAFE]: No data exfiltration, prompt injection, or obfuscation patterns were detected in the documentation or metadata.
Audit Metadata