introspection-attack-surface-reference
Pass
Audited by Gen Agent Trust Hub on Aug 12, 2026
Risk Level: SAFENO_CODEEXTERNAL_DOWNLOADS
Full Analysis
- [NO_CODE]: The skill is a pure-reference document containing markdown instructions and configuration snippets; it does not contain executable scripts or perform any automated logic.
- [SAFE]: The skill provides defensive security guidance, educating users on how to harden GraphQL deployments by disabling introspection, hiding error details, and implementing query limits.
- [EXTERNAL_DOWNLOADS]: The skill includes links to documentation from well-known and trusted technology providers, specifically Apollo GraphQL (apollographql.com) and The Guild (the-guild.dev). These references are used for informational purposes and do not trigger remote code execution.
Audit Metadata