rejection-handler
Pass
Audited by Gen Agent Trust Hub on Aug 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a procedural guide for developers. It does not contain any executable scripts (Python, JavaScript, or Shell) or configuration for remote code execution.
- [SAFE]: No sensitive data exposure or hardcoded credentials were found. The tool permissions (Read, Glob, Grep) are limited to the local environment and are used to provide context for the audit checklists.
- [SAFE]: No obfuscation techniques, hidden URLs, or malicious prompt injection patterns were detected. The instructions are transparent and aligned with the stated purpose of App Store compliance.
- [SAFE]: The skill ingests user input (rejection notices) via
AskUserQuestionto provide analysis. While this is a data ingestion surface, the agent's capabilities are restricted, and there is no mechanism for this input to be executed or exfiltrated, posing no significant risk.
Audit Metadata