NYC

payment-integration

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • SAFE (SAFE): No malicious patterns or security vulnerabilities were identified in the instructional content. The skill provides legitimate guidance for payment integration.
  • Indirect Prompt Injection (LOW):
  • Ingestion points: Webhook payloads from external payment providers (SePay, Polar).
  • Boundary markers: The skill provides and instructs the use of verification scripts (scripts/sepay-webhook-verify.js, scripts/polar-webhook-verify.js).
  • Capability inventory: Authentication management and payment event processing.
  • Sanitization: Mandatory signature verification is included in the integration workflow.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:30 PM