stripe-integration-expert
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill uses environment variables (e.g.,
process.env.STRIPE_SECRET_KEY) for API keys and secrets, adhering to best practices for secure credential management. - [SAFE]: The implementation of webhook handlers includes mandatory signature verification using
stripe.webhooks.constructEvent, protecting the application against spoofed or unauthorized data injections. - [SAFE]: External tooling references, specifically for the Stripe CLI, point to official and reputable sources via Homebrew.
Audit Metadata