convex-http-actions
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a comprehensive guide for building Convex HTTP endpoints, offering standard implementation patterns for request routing and response handling.
- [SAFE]: The code examples correctly demonstrate the use of environment variables (
process.env.STRIPE_SECRET_KEY,process.env.CLERK_WEBHOOK_SECRET) for managing sensitive credentials, which is a standard security best practice. - [SAFE]: Instructions explicitly mandate critical security measures, including the verification of webhook signatures (Stripe, GitHub, Clerk) before processing payloads.
- [SAFE]: All external references target official documentation at
docs.convex.dev, and the included Node.js dependencies (stripe,svix) are reputable, well-known libraries for their respective integrations. - [SAFE]: The skill includes explicit warnings against unauthorized deployment or git operations, further reducing the risk of accidental misconfiguration.
Audit Metadata