api-auth-clerk
Pass
Audited by Gen Agent Trust Hub on Sep 20, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides comprehensive security guidance for authentication and authorization.
- [CREDENTIALS_UNSAFE]: No hardcoded secrets were found. Documentation uses standard placeholders for environment variables.
- [DATA_EXFILTRATION]: The skill includes explicit warnings and code patterns to prevent leaking sensitive server-side metadata to client components.
- [REMOTE_CODE_EXECUTION]: No suspicious remote code downloads or execution patterns were detected.
- [INDIRECT_PROMPT_INJECTION]: The skill mitigates risks from untrusted external data by mandating signature verification for all webhook endpoints.
Audit Metadata