api-designer

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • [Prompt Injection] (SAFE): No malicious override instructions or safety bypass patterns were detected. All instructions are focused on API design best practices.- [Data Exposure & Exfiltration] (SAFE): No hardcoded secrets, sensitive file paths, or network exfiltration patterns were found. The content consists entirely of markdown documentation.- [Remote Code Execution] (SAFE): No commands for downloading or executing external scripts (e.g., curl | bash) are present. No package manifests (package.json or requirements.txt) were found.- [Obfuscation] (SAFE): No suspicious encoding or hidden characters were detected. The mention of Base64 in the pagination documentation refers to a standard API design pattern for opaque cursors and is used only in illustrative examples.- [Indirect Prompt Injection] (SAFE): While the skill is intended to process user-provided business requirements into API specifications, it lacks the necessary capabilities (such as code execution, file system modification, or network access) to be exploited by malicious data.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:40 PM