id-capture-cordova

Pass

Audited by Gen Agent Trust Hub on Aug 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill exclusively references official resources and domains belonging to the vendor 'scandit' (e.g., docs.scandit.com, github.com/Scandit) to provide accurate API information.
  • [PROMPT_INJECTION]: The instructional language used, such as "Do Not Trust Internal Knowledge," is designed to improve code quality and prevent common AI hallucinations regarding API signatures; it does not attempt to bypass safety guardrails or hide actions from the user.
  • [EXTERNAL_DOWNLOADS]: The skill provides standard developer instructions for adding official Scandit plugins via the Cordova CLI (e.g., cordova plugin add scandit-cordova-datacapture-id), which is the standard mechanism for library installation in this ecosystem.
  • [DATA_EXFILTRATION]: No exfiltration patterns were detected. The skill actively encourages security best practices by documenting how to use the SDK's built-in anonymization features to protect sensitive user data.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 1, 2026, 10:30 AM
Security Audit — agent-trust-hub — id-capture-cordova