matrixscan-pick-ios

Pass

Audited by Gen Agent Trust Hub on Aug 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a technical reference for integrating the Scandit SDK into native iOS projects. It includes Swift code samples, architectural guidance, and links to official documentation.
  • [EXTERNAL_DOWNLOADS]: The skill references official resources from the vendor 'scandit', including the Swift Package Manager repository github.com/Scandit/datacapture-spm and documentation at docs.scandit.com. These are recognized as legitimate vendor assets.
  • [PROMPT_INJECTION]: A deterministic detector flagged potential concealment patterns in the instructions. Upon manual review, phrases like "Do not tell the user to check the docs themselves" were found to be benign user experience guidelines aimed at ensuring the agent is helpful, rather than attempts to hide malicious behavior.
  • [COMMAND_EXECUTION]: No suspicious shell commands, privilege escalation attempts, or unauthorized persistence mechanisms were identified in the provided scripts or documentation.
  • [DATA_EXFILTRATION]: No evidence of hardcoded credentials, sensitive file access, or unauthorized data exfiltration to external domains was found.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 1, 2026, 10:30 AM
Security Audit — agent-trust-hub — matrixscan-pick-ios