stripe-implementer
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill contains legitimate implementation patterns for Stripe payments, subscription management, and customer handling.
- [SAFE]: Security best practices are explicitly documented and implemented in the code samples, including the mandatory verification of webhook signatures using the official Stripe SDK.
- [SAFE]: Environment variables for sensitive keys (e.g.,
STRIPE_SECRET_KEY) correctly use standard placeholders likesk_test_...and include warnings against client-side exposure. - [SAFE]: All referenced dependencies, such as
stripe,@stripe/stripe-js, and@stripe/react-stripe-js, are official and well-known packages from Stripe. - [SAFE]: No evidence of obfuscation, remote code execution, prompt injection, or unauthorized data exfiltration was found across any of the files.
Audit Metadata