wendy-security-baselines

Pass

Audited by Gen Agent Trust Hub on Sep 6, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a documentation resource defining security invariants and architectural constraints for the Wendy platform. It contains no scripts, binaries, or executable commands.
  • [SAFE]: The guidelines promote industry-standard and advanced security practices, such as the use of ML-DSA (post-quantum cryptography), FIDO2/passkeys for step-up authentication, and hardware-backed credential custody (TPM/OP-TEE).
  • [SAFE]: The skill explicitly prohibits insecure practices like bearer tokens, authorization backdoors, and unverified token decoding, aligning with security best practices.
  • [SAFE]: All external references point to a well-known project management service (Linear) hosting vendor-controlled documentation. No malicious obfuscation or unauthorized network activity was detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 6, 2026, 10:04 PM
Security Audit — agent-trust-hub — wendy-security-baselines