id-capture-capacitor
Pass
Audited by Gen Agent Trust Hub on Aug 1, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: The skill uses instructional boundaries to prevent model hallucinations about outdated API versions. Detections for concealment were determined to be false positives related to legitimate data privacy recommendations (anonymizing sensitive document fields) and technical documentation regarding SDK defaults.
- [EXTERNAL_DOWNLOADS]: All external references and sample code links target official Scandit domains (scandit.com) and the vendor's public GitHub repositories. These are trusted sources for the skill's stated purpose.
- [CREDENTIALS_UNSAFE]: Code examples correctly use descriptive placeholders for license keys rather than hardcoding actual secrets.
- [COMMAND_EXECUTION]: Mentioned commands such as 'npx cap sync' and 'pod install' are standard, non-malicious development workflows for Capacitor projects.
- [SAFE]: No malicious patterns, obfuscation, persistence mechanisms, or unauthorized data access were found. The skill serves as a high-quality technical integration guide.
Audit Metadata