zoom-apps-sdk
Pass
Audited by Gen Agent Trust Hub on May 11, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides official documentation and implementation guides for the Zoom Apps SDK, maintained by the vendor. All instructional content and code examples align with standard developer resources.- [SAFE]: External dependencies and script references point to official Zoom domains (appssdk.zoom.us, zoom.us) and reputable package registries (npm). These resources are from a well-known service and are considered safe.- [SAFE]: Implementation examples for authorization flows correctly utilize security best practices, including PKCE (Proof Key for Code Exchange) and CSRF protection via state parameters, ensuring secure token exchange.- [SAFE]: The documentation explicitly addresses security requirements for the Zoom Marketplace, such as mandatory OWASP headers, TLS requirements, and secure cookie configuration (SameSite=None; Secure), promoting the development of secure applications.- [SAFE]: No obfuscation, hardcoded credentials, or unauthorized network operations were identified within the instructional content or code snippets provided in the reference files.
Audit Metadata