pci-dss-rails
Pass
Audited by Gen Agent Trust Hub on Sep 8, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: The skill is primarily educational, providing best practices for PCI-DSS compliance. It does not contain malicious code or hidden instructions.
- [EXTERNAL_DOWNLOADS]: The skill includes a reference to the Stripe.js library from js.stripe.com. This is an official source from a well-known payment provider and is necessary for the implementation of the recommended security patterns.
- [DATA_EXFILTRATION]: No patterns of unauthorized data exfiltration were found. The skill actively encourages the use of tokenization to prevent sensitive cardholder data from ever reaching the application's servers.
Audit Metadata