twilio-security-hardening
Pass
Audited by Gen Agent Trust Hub on Jun 21, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides security best practices and implementation guidance for Twilio. It correctly advises against hardcoding credentials and recommends using environment variables or secret managers.
- [SAFE]: Code snippets for Node.js and Python use standard industry practices for request validation and API interaction. The Node.js example uses the official 'twilio' package for HMAC-SHA1 signature verification.
- [SAFE]: External references are limited to official Twilio documentation, the Twilio Console, and sales contact pages, which are well-known and trusted services.
- [SAFE]: No prompt injection, obfuscation, or persistence mechanisms were identified in the instructions or metadata.
Audit Metadata