skills/stripe/ai/connect-recommend/Gen Agent Trust Hub

connect-recommend

Pass

Audited by Gen Agent Trust Hub on Jul 30, 2026

Risk Level: SAFE
Full Analysis
  • Project Context Detection: The skill utilizes file system tools to identify existing Stripe integration patterns within the codebase, such as charge types, webhook handlers, and account identifiers. This analysis is used solely to corroborate business research and tailor recommendations to the project's current state.
  • External Business Research: The skill employs web fetching tools to analyze company websites and public business descriptions. This process is designed to infer business models and payment flows, which are then presented to the user for validation before being used in the recommendation logic.
  • Indirect Prompt Injection Consideration: Because the skill processes content from external URLs to perform research, it possesses an ingestion surface for potential indirect prompt injection. However, the requirement for manual user confirmation of all inferred business dimensions and the specific focus on technical configuration mapping serve as effective mitigations for this interaction model.
  • Vendor-Specific Resource Integration: The skill correctly references official documentation and tools from Stripe, such as pricing guides and the Platform Pricing Tool. These references are consistent with the skill's stated purpose and originate from the verified vendor's infrastructure.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 30, 2026, 01:28 PM
Security Audit — agent-trust-hub — connect-recommend