graphql-architect

Pass

Audited by Gen Agent Trust Hub on Sep 23, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a technical resource for GraphQL architecture, including schema design, federation, and performance optimization.
  • [SAFE]: The instructions and examples encourage the use of defensive security measures such as depth limiting and query complexity analysis to protect against resource exhaustion.
  • [SAFE]: Data handling patterns, such as the use of opaque identifiers for Relay-style pagination, follow industry-standard security recommendations to avoid enumeration attacks and internal database structure exposure.
  • [SAFE]: The dependencies mentioned, including Apollo Server components and the DataLoader utility, are well-known, legitimate libraries commonly used in modern web development.
  • [INDIRECT_PROMPT_INJECTION]: The skill functions as a development assistant that ingests user-provided schema designs and requirements. While it acts on untrusted input, its focus on generating architectural guidance and standard code patterns is typical for coding skills and presents no unusual risk beyond the standard ingestion surface.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 23, 2026, 08:05 AM
Security Audit — agent-trust-hub — graphql-architect