portal-app-exchange

Pass

Audited by Gen Agent Trust Hub on Sep 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a specialized technical reference for debugging cross-app communication within a specific platform. It enforces security boundaries by requiring a five-step validation process for token exchange, including explicit grants, whitelisting, and user consent.
  • [SAFE]: It promotes the Principle of Least Privilege by implementing scope intersection logic, ensuring that the exchanged token never possesses more permissions than the originating token or the target application's allowed scopes.
  • [SAFE]: Troubleshooting steps for sensitive configuration (like App Secrets) are handled securely, recommending SHA256 hash comparisons rather than plaintext exposure, and providing placeholders for implementation examples.
  • [SAFE]: The skill includes clear guidance to prevent the AI from misinterpreting monorepo file paths, reducing the risk of accidental file system errors or hallucinations during developer support tasks.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 22, 2026, 04:21 AM
Security Audit — agent-trust-hub — portal-app-exchange