stripe-implementer

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill contains legitimate implementation patterns for Stripe payments, subscription management, and customer handling.
  • [SAFE]: Security best practices are explicitly documented and implemented in the code samples, including the mandatory verification of webhook signatures using the official Stripe SDK.
  • [SAFE]: Environment variables for sensitive keys (e.g., STRIPE_SECRET_KEY) correctly use standard placeholders like sk_test_... and include warnings against client-side exposure.
  • [SAFE]: All referenced dependencies, such as stripe, @stripe/stripe-js, and @stripe/react-stripe-js, are official and well-known packages from Stripe.
  • [SAFE]: No evidence of obfuscation, remote code execution, prompt injection, or unauthorized data exfiltration was found across any of the files.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 05:10 AM
Security Audit — agent-trust-hub — stripe-implementer