oauth-oidc-misconfiguration
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill serves as a purely instructional reference for OAuth and OIDC security assessments. It does not contain any executable code, scripts, or commands.
- [NO_CODE]: No code or scripts were found in the skill. It consists entirely of Markdown documentation and configuration metadata.
- [INDIRECT_PROMPT_INJECTION]: As a security testing playbook, the agent using this skill will naturally process external application data (like OAuth parameters). While this represents a theoretical attack surface for indirect prompt injection, the skill itself contains no vulnerable interpolation or execution patterns.
Audit Metadata