api-design-skill
Pass
Audited by Gen Agent Trust Hub on Mar 31, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a reference guide for API design principles and does not contain any executable malicious logic or instructions to bypass safety filters.
- [SAFE]: Encourages security best practices such as mandatory authentication checks, input validation using Zod, and rate limiting for sensitive AI endpoints.
- [SAFE]: Includes a secure implementation example for webhook signature verification using timing-safe comparisons to prevent timing attacks.
- [SAFE]: Explicitly warns against anti-patterns such as leaking internal error details or stack traces to clients, which reduces the risk of information disclosure.
Audit Metadata