convex-http-actions

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a comprehensive guide for building Convex HTTP endpoints, offering standard implementation patterns for request routing and response handling.
  • [SAFE]: The code examples correctly demonstrate the use of environment variables (process.env.STRIPE_SECRET_KEY, process.env.CLERK_WEBHOOK_SECRET) for managing sensitive credentials, which is a standard security best practice.
  • [SAFE]: Instructions explicitly mandate critical security measures, including the verification of webhook signatures (Stripe, GitHub, Clerk) before processing payloads.
  • [SAFE]: All external references target official documentation at docs.convex.dev, and the included Node.js dependencies (stripe, svix) are reputable, well-known libraries for their respective integrations.
  • [SAFE]: The skill includes explicit warnings against unauthorized deployment or git operations, further reducing the risk of accidental misconfiguration.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 05:41 PM
Security Audit — agent-trust-hub — convex-http-actions