terra-api
Pass
Audited by Gen Agent Trust Hub on Jul 3, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a comprehensive guide for developers integrating health and fitness data via the Terra API. It includes rules for webhook handling, data idempotency, and connection lifecycles.
- [CREDENTIALS_SAFE]: Code examples correctly demonstrate using environment variables (e.g.,
env.TERRA_SIGNING_SECRET,env.TERRA_DEV_ID) for authentication tokens and signing secrets, adhering to secure secret management standards. - [EXTERNAL_DOWNLOADS]: The skill references official vendor domains (
tryterra.co,api.tryterra.co,docs.tryterra.co) for documentation and API access. These are legitimate resources associated with the skill's primary purpose. - [COMMAND_EXECUTION]: Documentation includes standard commands for skill installation and usage of the official
terra-apiSDK. No suspicious or unauthorized shell commands were identified. - [PROMPT_INJECTION]: The content is strictly technical and instructional. There are no patterns suggesting attempts to bypass safety filters or override agent behavior.
Audit Metadata