telnyx-voice-javascript

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill implements standard and secure API integration patterns, including official SDK usage and recommended error handling.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external data via webhooks, which is a potential ingestion surface. Risk is mitigated by implementing cryptographic signature verification. Ingestion points: Webhook payloads processed in the /webhooks handler (SKILL.md). Boundary markers: Structured JSON parsing via the official telnyx SDK. Capability inventory: Call control operations including dial, answer, and transfer (SKILL.md). Sanitization: Ed25519 signature verification using client.webhooks.unwrap() (SKILL.md).
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 12:36 PM
Security Audit — agent-trust-hub — telnyx-voice-javascript