id-capture-flutter
Pass
Audited by Gen Agent Trust Hub on Jun 29, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill instructions regarding PII anonymization and data minimization were evaluated. These are identified as privacy-preserving best practices for handling sensitive identity document data, ensuring that only necessary fields are processed by the application. These do not constitute malicious concealment of actions.
- [SAFE]: Instructions directing the agent to prioritize the provided reference documentation over internal training data are benign measures intended to prevent API hallucinations and ensure compatibility with the specific SDK versions supported by the skill.
- [SAFE]: All external dependencies, including Flutter packages (e.g., scandit_flutter_datacapture_id) and documentation URLs, are sourced from official Scandit repositories or established Flutter ecosystem registries. No suspicious third-party downloads or remote code execution patterns were detected.
- [SAFE]: The processing of identity document data (e.g., passports, driver's licenses) is handled through structured SDK objects. The skill provides code patterns for UI display and local application logic, without creating an attack surface for indirect prompt injection via the interpolation of untrusted data into subsequent LLM prompts.
Audit Metadata