webhook-async
Pass
Audited by Gen Agent Trust Hub on Jul 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a reference and template provider for software architectural design. It emphasizes critical security measures for webhooks, including HMAC-SHA256 signing and the use of timestamps to prevent replay attacks.
- [SAFE]: No executable components, remote dependencies, or data exfiltration patterns were identified. The included Python code snippet for signature verification uses standard libraries in a secure manner.
- [SAFE]: All external references target well-known industry leaders in the webhook space (Stripe and SVIX), which are used to provide legitimate technical documentation.
Audit Metadata