device-integrity

Pass

Audited by Gen Agent Trust Hub on Mar 8, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides legitimate implementation guidance for device integrity features using official Apple APIs (DeviceCheck and App Attest).\n- [SAFE]: Implementation includes secure persistence of sensitive identifiers in the iOS Keychain with appropriate accessibility attributes (kSecAttrAccessibleAfterFirstUnlockThisDeviceOnly).\n- [SAFE]: Network communication is correctly structured to interact with a developer-defined backend for challenge-response attestation and request verification, which is the intended and documented purpose of these services.\n- [SAFE]: The provided code snippets include robust error handling for Apple-specific error codes (DCError), including retry logic for server-side failures and key regeneration policies for invalidated keys.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 8, 2026, 07:48 PM