tax-calculation
Pass
Audited by Gen Agent Trust Hub on Mar 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, or safety bypass attempts were detected. The skill's content is entirely focused on legitimate tax calculation and compliance workflows.
- [EXTERNAL_DOWNLOADS]: The skill references official plugins and services from well-known providers (TaxJar, Avalara, Stripe) and reputable marketplaces (Shopify App Store, WordPress.org). These are standard integrations for the stated functionality and do not involve untrusted code execution.
- [DATA_EXFILTRATION]: The skill correctly handles sensitive credentials, such as API keys, by instructing the use of environment variables (e.g., TAXJAR_API_KEY) rather than hardcoded values. Network calls for VAT validation are directed to official government endpoints (ec.europa.eu).
- [PROMPT_INJECTION]: The skill contains no instructions designed to override agent safety filters or extract system prompts. All instructions are within the scope of configuring tax software.
Audit Metadata