developing-web-apis

Pass

Audited by Gen Agent Trust Hub on Mar 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists exclusively of markdown documentation and reference materials intended to guide developers in building secure and well-designed APIs. No malicious execution logic was detected.
  • [SAFE]: The security guidance provided in references/DESIGN-SECURITY.md promotes industry-standard practices such as HTTPS enforcement, SQL injection prevention via prepared statements, and CSRF/XSS mitigations.
  • [SAFE]: Code snippets for Go testing and bash scripts for test execution are local development templates and do not involve remote code execution or suspicious external downloads.
  • [SAFE]: No obfuscation, data exfiltration patterns, or prompt injection attempts were found in any of the skill files.
  • [SAFE]: Sensitive data placeholders (e.g., 'xxx', '${{ secrets.PACT_BROKER_TOKEN }}') are used correctly for documentation purposes without exposing actual credentials.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 29, 2026, 11:13 PM
Security Audit — agent-trust-hub — developing-web-apis