actionmailer-baseline
Pass
Audited by Gen Agent Trust Hub on Sep 8, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill demonstrates secure credential management practices by instructing users to use
Rails.application.credentialsand environment variables for API tokens.\n- [SAFE]: All external dependencies, includingletter_opener,aws-sdk-rails, andmailgun-ruby, are standard and reputable libraries within the Ruby on Rails community.\n- [SAFE]: The guidance for handling bounce and complaint webhooks includes a specific instruction to verify request signatures, which is critical for preventing unauthorized data updates.\n- [SAFE]: The use ofdeliver_lateris correctly promoted as the default for user-facing request paths, preventing potential denial-of-service conditions caused by synchronous network I/O.\n- [SAFE]: The skill uses well-known technology providers for production delivery, including Postmark, SendGrid, AWS SES, and Mailgun, without introducing any suspicious or unauthorized remote code execution patterns.
Audit Metadata