terra-api

Pass

Audited by Gen Agent Trust Hub on Jul 3, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a comprehensive guide for developers integrating health and fitness data via the Terra API. It includes rules for webhook handling, data idempotency, and connection lifecycles.
  • [CREDENTIALS_SAFE]: Code examples correctly demonstrate using environment variables (e.g., env.TERRA_SIGNING_SECRET, env.TERRA_DEV_ID) for authentication tokens and signing secrets, adhering to secure secret management standards.
  • [EXTERNAL_DOWNLOADS]: The skill references official vendor domains (tryterra.co, api.tryterra.co, docs.tryterra.co) for documentation and API access. These are legitimate resources associated with the skill's primary purpose.
  • [COMMAND_EXECUTION]: Documentation includes standard commands for skill installation and usage of the official terra-api SDK. No suspicious or unauthorized shell commands were identified.
  • [PROMPT_INJECTION]: The content is strictly technical and instructional. There are no patterns suggesting attempts to bypass safety filters or override agent behavior.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 3, 2026, 03:05 PM
Security Audit — agent-trust-hub — terra-api