api-documentation
Pass
Audited by Gen Agent Trust Hub on May 13, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill is entirely instructional, focusing on best practices for API documentation such as identifying audiences, documenting endpoints, and providing realistic examples.
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to ingest external data sources like OpenAPI specifications, GraphQL schemas, and source code files. While these are untrusted data ingestion points, the risk is mitigated by the skill's specific focus on generating documentation rather than executing commands or performing network operations. No specific sanitization or boundary markers are defined in the instructions.
Audit Metadata