attacking-oauth-oidc

Pass

Audited by Gen Agent Trust Hub on Jul 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides a structured methodology for identifying and testing common security flaws in OAuth 2.0 and OIDC implementations. The instructions are pedagogical and designed for authorized security assessments.
  • [EXTERNAL_DOWNLOADS]: Includes examples of fetching publicly available OpenID Connect discovery documents using 'curl'. These requests are standard for service discovery and do not involve remote code execution or suspicious downloads.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 27, 2026, 08:23 PM
Security Audit — agent-trust-hub — attacking-oauth-oidc